CSRF verification failed. Request aborted.

11 views
Skip to first unread message

Jagga Soorma

unread,
Apr 27, 2016, 4:52:59 PM4/27/16
to Django users
Hi Guys,

We have a few internal sites that seem to be creating a cookie with domain .xxx.com.  If I access one of these sites and then try to access my horizon interface (which creates a yyy.xxx.com domain cookie) I am no longer able to and get the following error message:

--
CSRF verification failed. Request aborted.
--

if I manually remove the .xxx.com domain cookie then it works fine.  Looks like horizon matches the .xxx.com (not fqdn) cookie instead of its own yyy.xxx.com.  Not sure how cookies work and was wondering if anyone on this list can help point me in the correct direction. 

Thanks!



Reply all
Reply to author
Forward
0 new messages