c2c-oerpscenario team mailing list archive
-
c2c-oerpscenario team
-
Mailing list archive
-
Message #08299
[Bug 690514] Re: [trunk] CSRF check in 4091 breaks mod_proxy
** Changed in: openobject-client-web
Status: New => Triaged
** Changed in: openobject-client-web
Assignee: (unassigned) => Jay (OpenERP) (jvo-openerp)
--
You received this bug notification because you are a member of C2C
OERPScenario, which is subscribed to the OpenERP Project Group.
https://bugs.launchpad.net/bugs/690514
Title:
[trunk] CSRF check in 4091 breaks mod_proxy
Status in OpenObject Web Client:
Triaged
Bug description:
The CSRF check won't work in most cases with mod_proxy - the host/ref is going to be different (e.g. 127.0.0.1)
Likely better way to do it is using a token/hidden field... I'd provide a patch but I haven't worked much with the web client yet.
References