diff --git a/ara/settings/dev/__init__.py b/ara/settings/dev/__init__.py index 86820cf3..0da0bbc3 100644 --- a/ara/settings/dev/__init__.py +++ b/ara/settings/dev/__init__.py @@ -7,6 +7,7 @@ DEBUG = True ALLOWED_HOSTS = ["*"] +CSRF_TRUSTED_ORIGINS = ["*"] CORS_ORIGIN_ALLOW_ALL = True diff --git a/ara/settings/prod/__init__.py b/ara/settings/prod/__init__.py index 6c456d41..b115458a 100644 --- a/ara/settings/prod/__init__.py +++ b/ara/settings/prod/__init__.py @@ -9,6 +9,11 @@ "ara.sparcs.org", ] +CSRF_TRUSTED_ORIGINS = [ + "newara.sparcs.org", + "ara.sparcs.org", +] + SSO_IS_BETA = False SESSION_COOKIE_SAMESITE = "Lax"