Redirect to keycloak for non authenticated user - Cookies are not forward after successful login


I’m running istio as ingress controller on Kubernetes, and i created an envoy filter to the gateway to redirect traffic of non authenticated user to keycloak login. This first part is simple, and it works fine.

My problem is that after authentication succeeded, the user is redirect to its original url he gave, but the cookies set during the authentication flow are not forwarded to the “redirect_url”.
AFAIK, the browser should do the job for me, right ?.
Can you please confirm my expectation. Did i miss something ?