csrf_token

What is the purpose of this "csrf_token"

a:2:{s:10:"csrf_token";s:20:"7MCLP/s4A=ifwiBK.C8b";s:15:"csrf_token_time";i:1405137985;}

Is this like some kind of encryption...

I do remember the sys_session table being more viewable without this token...

Csampson
Quote · 13 Jul 2014

csrf tokens are added to forms which is a new feature in dolphin which you can enable or disable in Settings->Advanced Settings->Security.

They are intended to protect the forms from cross site request forgery attacks.

https://www.deanbassett.com
Quote · 13 Jul 2014

Thanks that is very helpful...

Csampson
Quote · 13 Jul 2014

but how do you make them work in forms?

Quote · 1 Apr 2016
 
 
Below is the legacy version of the Boonex site, maintained for Dolphin.Pro 7.x support.
The new Dolphin solution is powered by UNA Community Management System.