I don't really understand the question, maybe the HttpOnly attribute is what you are looking for. You are running an old version of the portal, consider upgrading to at least 7.3 for better cookie and session security. You should know that in order to prevent man in the middle types of attack, further steps are necessary (like switching to HTTPS).