• Home
  • Categories
  • Recent
  • Popular
  • Top
  • Tags
  • Users
  • Groups
  • Documentation
    • Home
    • Read API
    • Write API
    • Plugin Development
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
v3.5.2 Latest
Buy Hosting

Failed login attempt, forbidden, invalid csrf token

Scheduled Pinned Locked Moved Solved Technical Support
errorfailurecsrfloginv0.8.1
4 Posts 2 Posters 3.1k Views
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • amarinelliA Offline
    amarinelliA Offline
    amarinelli
    wrote on last edited by
    #1

    I have a fresh install of NodeBB v0.8.1 on Ubuntu (Microsoft Azure VM). Installation and config went smoothly as well as registering a few initial users, etc.

    A few hours later new users as well as myself are consistently getting a Forbidden error when trying to login or register a new account.

    ./nodebb log simply says invalid csrf token for the /register and /login routes.

    There have been a few other posts on here spanning the last several months regarding invalid csrf tokens. Some hint at solutions involving DNS propogation or resetting the themes.

    Using redis-server 3.0.3
    Current theme: Persona v2.1.25
    Git hash: 8ff79af6b916b1741f957968f7cab06b68a406b2

    Thanks for any ideas.

    1 Reply Last reply
    1
  • amarinelliA Offline
    amarinelliA Offline
    amarinelli
    wrote on last edited by
    #2

    UPDATE

    While troubleshooting an issue with the email plugin, we added our site domain in ACP settings > advanced > domain-settings.

    Removing these two domains back to their defaults (blank) immediately solved the invalid csrf token issues.

    1 Reply Last reply
    1
  • amarinelliA Offline
    amarinelliA Offline
    amarinelli
    wrote on last edited by
    #3

    (can't mark this as Solved ... does a moderator need to do this or are there just issues with Q&A plugin?)

    1 Reply Last reply
    0
  • julianJ Offline
    julianJ Offline
    julian GNU/Linux
    wrote on last edited by
    #4

    Thanks for the update @amarinelli

    1 Reply Last reply
    0

Copyright © 2023 NodeBB | Contributors
  • Login

  • Don't have an account? Register

  • Login or register to search.
Powered by NodeBB Contributors
  • First post
    Last post
0
  • Home
  • Categories
  • Recent
  • Popular
  • Top
  • Tags
  • Users
  • Groups
  • Documentation
    • Home
    • Read API
    • Write API
    • Plugin Development