IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Contents are getting blocked in external Reverse proxt

    Posted Mon November 11, 2024 10:42 AM

    We have internal and external reverse proxy setup for application, but we are unable to access some contents while using external reverse proxy and same is accessible from internal reverse proxy.

    We have observed that when we remove X-Requested-With header using browser developer tool we are able to get the response back.

    Can someone suggest what needs to be looked up.

    Thanks

    Rahul Jha



    ------------------------------
    Rahul Jha
    ------------------------------


  • 2.  RE: Contents are getting blocked in external Reverse proxt

    Posted Tue November 12, 2024 06:55 AM

    Possibly need CORS policy?
    https://markitzeroday.com/x-requested-with/cors/2017/06/29/csrf-mitigation-for-ajax-requests.html



    ------------------------------
    Shane Weeden
    IBM
    ------------------------------