cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

403 Forbidden : CSRF token validation failed

38,341

Hi,

I have created the Fiori app(version 1.28) in web ide and imported into eclipse.

In component.js config, I have mentioned the complete odata service URL without proxy and opening the application in chrome with argument --disable web security.

I Just did some Odata model binding to items aggregation of table in my xml view.


And yes, I am using OData V2 model(auto generated code in models.js), handling of csrf token is by default true.

I can see the calls are fired one to fetch the CSRF token and the other to GET the data in a batch.

But still, I am facing issue that 403 Forbidden. Not able to understand why this is happening. Please find the attached.

Kindly suggest If I have to do any changes either in my UI5 code, OData Service implementation or Gateway configurations.

Thanks in Advance..!!

With Best Regards,

Phaneendra

View Entire Topic
amarnath_prasad
Explorer
0 Likes

1st of all call get method for CSRF token of that service then call your upload  url.It will definitely work.Reason is very clear when we  are making any modify request(post/update method) framework validate  CSRF token(cross site request forgery) & making any  non modify request(get method) csrf token returns in header.



Reward if helpful.