Skip to content

Help with CSRF on Rodauth + Omniauth - API Only (Secure cookie) #23

Closed Answered by AlexeyMatskevich
AlexeyMatskevich asked this question in Q&A
Discussion options

You must be logged in to vote

Lack of a cookie received at the POST /auth/:provider_name step on the client results in Authentication Error! csrf_detected: OmniAuth::Strategies::OAuth2::CallbackError, csrf_detected | CSRF detected at the callback step when your strategy is based on omniauth-oauth2

Replies: 3 comments 9 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
9 replies
@janko
Comment options

janko Nov 1, 2024
Maintainer

@AlexeyMatskevich
Comment options

@janko
Comment options

janko Nov 1, 2024
Maintainer

@AlexeyMatskevich
Comment options

@janko
Comment options

Comment options

You must be logged in to vote
0 replies
Answer selected by AlexeyMatskevich
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants