I am trying to secure the JSESSIONID cookie for my webapp deployed on Oracle Weblogic server ( other than the weblogic default WL_AUTH_COOKIE which is secure by default). I