#3889 - Cross Site Request Forgery (XSRF) Attack Detected
Hi Support,
I was trying to install your report package through module load and I got the following error "Cross Site Request Forgery (XSRF) Attack Detected Form authentication failure (Administration -> UpgradeWizard). Contact your administrator."
I have downloaded the onsite package for installation into our onsite instance.
6 years ago
Please find attached screenshot for the same
6 years ago
Hello,
Thank you for contacting us!
This is known issue with Sugar. Sometimes, with specific environment configuration, Sugar can produce XSRF error messages. Please, refer to Sugar documentation to solve this issue: http://support.sugarcrm.com/Knowledge_Base/Troubleshooting/Troubleshooting_Cross-Site_Forgery_Messages/
Best Regards, IT Sapiens Team
6 years ago
Hi,
I have added those parameter in config_override.php before raising this case only. But it's not working even after following those steps.
6 years ago
Sometimes solution for this case can in changing soft fail settings. More information can be found in Sugar blog: https://community.sugarcrm.com/community/developer/blog/2017/10/11/upcoming-security-changes-to-sugar
Please note, that your site URL found in "config.php" should be the same which you access from browser address bar. In several cases, for example, when you use VPN this should be managed.
If this information didn't help you, then please provide us with temporary SSH/FTP and CRM user access to your server and we will try to solve this for you.
Best Regards, IT Sapiens Team
6 years ago
Very Important: please do not share any access information over here, as this is public info - let's agree details via e-mail in that case: info@itsapiens.eu
Thank you! Best Regards, IT Sapiens Team
6 years ago
Hi,
For outside access, I need to get it approved from our management. This will take little time so please do not close this case. I will revert with the ssh and sugarcrm credentials over mail as soon as possible.
6 years ago
OK, thank you, looking forward to hearing from you!
Best Regards, IT Sapiens info@itsapiens.eu
6 years ago
Hi,
I have sent you the details from the following email address: deepjyoti@bhea.com
Please check and leave a reply when you have a moment.