As of web-app ver3.0, session cookie's options, such as domain or maxage, are configurable in web.xml, for example.
These features are specified in Server3.0's class SessionCookieConfig.
But org.apache.catalina.connector.Tomcat70CookieWriter ignores these configurations except for httpOnly.
(The cookie writer treats all cookies created by ApplicationSessionCookieConfig as temporal ones.)
Maybe you recognize that Tomcat70CookieWriter is in org.apache.catalina.connector package so the source code is originated to Tomcat.
But the class is included in tim-tomcat-7.0-2.3.1.jar and the jar is included in terracotta-session-1.2.1.jar.
I don't think Tomcat developers are responsible for terracotta-session-1.2.1.jar or tim-tomcat-7.0-2.3.1.jar.
Tomcat is surely not responsible for those integration modules, Can you please give more details on your issue , Can you share a reproducible use case , your configuration and deployment details.