

CSRF token is missing in MDK Client 6.3.4 for iOS
source link: https://answers.sap.com/questions/13810932/csrf-token-is-missing-in-mdk-client-634-for-ios.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

CSRF token is missing in MDK Client 6.3.4 for iOS
Hello experts,
I face a confusing issue with SAM MDK 6.3.4 when it runs on iOS. I receive the following error on my first attempt to call the backend: CSRF token is missing. The issue is reproducible with the application Mobile Svc installed from AppStore as well as with custom MDK client build v.6.3.3 and 6.3.3
The service endpoint is OData v.4 and the error is observed only on iOS: on real device and simulator. It works without issue on Android
There are 2 strange things about the error:
- it seems the error is thrown by the backend, because JSON error object looks like this:
{"error":{"code":"/IWBEP/CM_V4H_RUN/043","message":"CSRF token is missing","@SAP__common.ExceptionCategory":"CSRF_Token_Missing"}
- I don’t register any call to the backend on NW Gateway client traces
Do you fetch this CSRF token during the application boarding? Do you use a technical user for this? Do you have any explanation or hint what I could miss and how I can further investigate is something is wrong with the application?
Regards,
Dimiter
Recommend
-
14
用Burpsuite 来处理csrf token c4bbage
-
15
November 10, 2020 How To Fix Laravel CSRF Token Mismatch Error From AJAX RequestAs I’ve mentioned in pre...
-
18
关注+ 星标公众 号 ,不错过精彩内容 作者 | str...
-
6
Keil MDK 配置指南Skip to main contentKeil MDK 配置指南1. 下载
-
3
Technical Articles
-
5
Technical Articles
-
10
How To Handle CSRF Token in Jmeter Reading Time: 2 minutesWhat is CSRF– CSRF stands for Cross-Site Request Forgery. Generally when we login in website it always ask for authentication. For the...
-
14
ASUTOSH MAHARANA September 18, 2021 3 minute read ...
-
11
【Root-Me】 CSRF 这题与【Web-Client : CSRF - 0 protection】是一样的,只是多了一个 token 校验。 切到 Profi...
-
8
GET and POST CSRF Token internally using policies in SAP APIM Introduction This blog post describes how to call CSRF token internally and post the token in headers using policies in SAP API Management
About Joyk
Aggregate valuable and interesting links.
Joyk means Joy of geeK