[Koha-devel] Bug 36586 - Self-checkouts will get CSRF errors if left inactive for 8 hours

David Cook dcook at prosentient.com.au
Fri Apr 12 06:47:43 CEST 2024


Hi all,

 

We recently noticed that self-checkouts will generate CSRF errors when left
unattended for over 8 hours (the lifetime of the CSRF token).

 

Our solution is to use a timer to refresh the page every 8 hours or so, but
open to other ideas. 

 

This will potentially affect Vue.js driven pages that don't reload the whole
page. Although maybe Jonathan has already come up with a solution for that.
I'm not sure. 

 

David Cook

Senior Software Engineer

Prosentient Systems

Suite 7.03

6a Glen St

Milsons Point NSW 2061

Australia

 

Office: 02 9212 0899

Online: 02 8005 0595

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.koha-community.org/pipermail/koha-devel/attachments/20240412/34a77e90/attachment.htm>


More information about the Koha-devel mailing list