[BlueOnyx:25750] Re: CSRF mismatch: The action you have requested is not allowed.

Fungal Style wayin at hotmail.com
Fri Nov 25 16:42:55 -05 2022


Hi Keith,

Just a quick 2 cents worth, I setup a couple of (5208 or similar I think as I needed some older PHP version for a site to be moved) in the last few days and started to hit this issue with them, it was more about the time and date set on the BO server, after setting, restarting from the shell they seem to be stable now, maybe it was something in my environment, but something to look out for: 
timezone name
Date
Time

Regards
Brian

On 26/11/2022, 8:27 am, "Blueonyx on behalf of Michael Stauber" <blueonyx-bounces at mail.blueonyx.it on behalf of mstauber at blueonyx.it> wrote:

    Hi Keith,

    > Just did 2 fresh install of 5210R and I've faced with this again
    > 
    > CSRF mismatch: The action you have requested is not allowed.
    > 
    > On two different fresh installs
    > 
    > Just thought I would let you know Michael

    This is how it's supposed to be: Upon a fresh install of BlueOnyx 5210R 
    CSRF is disabled automatically until you finish the web based setup 
    wizard. Then it gets turned on automatically. It protects both GET and 
    POST requests.

    Where did the error happen? During the web based initial setup or past it?

    On the Login page? Or past it?

    Anyway: If you want, you can turn off CSRF protection this way from SSH 
    as root. This goes all into one line:

    echo "Find System"|/usr/sausalito/bin/cceclient|grep ^104|awk '{ print 
    "SET " $3 " csrf_protection = 0"}'|/usr/sausalito/bin/cceclient

    -- 
    With best regards

    Michael Stauber
    _______________________________________________
    Blueonyx mailing list
    Blueonyx at mail.blueonyx.it
    http://mail.blueonyx.it/mailman/listinfo/blueonyx





More information about the Blueonyx mailing list