-
-
Notifications
You must be signed in to change notification settings - Fork 387
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
state mismatch #63
Comments
I cannot see how i could possibly help when i know it's something to do with the way you have your sessions set up or cookies and i don't see your whole setup :) |
thx for your reply this my app.js
and this is the router file auth.js
|
As i suspected, the problem is somewhere within your environment. The following gist for me works just fine and i get to the oidc claims with no issues whatsoever. What i find strange is your redirect uri. And your session cookie should be secure if you're using https... And it's also entirely possible your OP is not sending the state back unmodified and then that's the actual problem, but that's why the assertion is in place. |
hi,
I run into a state mismatch error, i read the previous issue but i dont understant what to do.
im using express with passport
i checked the cookie and its not secure:
and the callback return 2 params: code and state.
i need help, please 😄
The text was updated successfully, but these errors were encountered: