Skip to content

CSRF with GitHub Login #1150

Discussion options

You must be logged in to vote

Oh, I found the problem.
It appeared that I went from UI to github.com/login/oauth/.... directly instead of using action and fields provided in response from kratos/self-service/login/flows.

So I need to submit form with acquired CSRF token to self-service/methods/oidc/auth/ which sets ory_kratos_continuity cookie and then redirects to github

Replies: 2 comments 6 replies

Comment options

You must be logged in to vote
4 replies
@MalyshevValery
Comment options

@vinckr
Comment options

@MalyshevValery
Comment options

@MalyshevValery
Comment options

Comment options

You must be logged in to vote
2 replies
@vinckr
Comment options

@MalyshevValery
Comment options

Answer selected by MalyshevValery
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants