Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. Easy!Appointments
  3. Easy!Appointments can't get iframes working correctly due to csrf token. Can't turn off csrf token because config file hidden from File Manager

Easy!Appointments can't get iframes working correctly due to csrf token. Can't turn off csrf token because config file hidden from File Manager

Scheduled Pinned Locked Moved Easy!Appointments
6 Posts 3 Posters 987 Views 3 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P Offline
      P Offline
      plains.digital
      wrote on last edited by
      #1

      Hullo!
      I'm trying to embed a booking calendar from Easy!Appointments into a client's website.
      the iFrame will load, but loads with an error pop up, as seen:

      873b3910-d272-4dac-b0d4-e20033221b2d-image.png

      Digging through the E!A support group, I discovered that iframes won't work with CSRF. I was advised to remove the check to get around the issue. I hate to lose security features, but I have to make this work, so I attempted to remove the check, but the config.php file that holds it is in application/config/conifig.php, which isn't open in the file manager and thus uneditable by me.

      Any ideas? Thanks in advance!

      1 Reply Last reply
      0
      • P Offline
        P Offline
        plains.digital
        wrote on last edited by
        #2

        Oh, my bad! this has been brought up - just didn't get a happy ending 😅
        bummer!

        I'm going to have to find a new open-source calendar booking app and request it, I guess.
        for now, client gets Calendly 😂

        I now wish I'd dealt with this issue BEFORE spending a couple hours sorting out the Google Calendar sync issues! 🤢 🤷‍♂️

        jdaviescoatesJ 1 Reply Last reply
        1
        • nebulonN Offline
          nebulonN Offline
          nebulon
          Staff
          wrote on last edited by
          #3

          Maybe you can raise an upstream issue with easyAppointments to support more fine-grained CSP settings to allow specific domains for embedding?

          1 Reply Last reply
          2
          • P plains.digital

            Oh, my bad! this has been brought up - just didn't get a happy ending 😅
            bummer!

            I'm going to have to find a new open-source calendar booking app and request it, I guess.
            for now, client gets Calendly 😂

            I now wish I'd dealt with this issue BEFORE spending a couple hours sorting out the Google Calendar sync issues! 🤢 🤷‍♂️

            jdaviescoatesJ Offline
            jdaviescoatesJ Offline
            jdaviescoates
            wrote on last edited by
            #4

            @plains-digital said in Easy!Appointments can't get iframes working correctly due to csrf token. Can't turn off csrf token because config file hidden from File Manager:

            I'm going to have to find a new open-source calendar booking app and request it, I guess.

            No need, we already have Cal.com which is the best!

            I've not started using the Cloudron package yet, but I've been using the hosted service for a while now and it's great!

            I use Cloudron with Gandi & Hetzner

            P 1 Reply Last reply
            1
            • jdaviescoatesJ jdaviescoates

              @plains-digital said in Easy!Appointments can't get iframes working correctly due to csrf token. Can't turn off csrf token because config file hidden from File Manager:

              I'm going to have to find a new open-source calendar booking app and request it, I guess.

              No need, we already have Cal.com which is the best!

              I've not started using the Cloudron package yet, but I've been using the hosted service for a while now and it's great!

              P Offline
              P Offline
              plains.digital
              wrote on last edited by
              #5

              @jdaviescoates my 1st attempt at loading up cal.com crashed and burned (it was still unstable) so i had dismissed it. just tried again and have been configuring it this afternoon.

              and you're right. it's the best booking app ive come across, paid or free.
              sweet!

              thanks for the reminder.

              jdaviescoatesJ 1 Reply Last reply
              1
              • P plains.digital

                @jdaviescoates my 1st attempt at loading up cal.com crashed and burned (it was still unstable) so i had dismissed it. just tried again and have been configuring it this afternoon.

                and you're right. it's the best booking app ive come across, paid or free.
                sweet!

                thanks for the reminder.

                jdaviescoatesJ Offline
                jdaviescoatesJ Offline
                jdaviescoates
                wrote on last edited by
                #6

                @plains-digital said in Easy!Appointments can't get iframes working correctly due to csrf token. Can't turn off csrf token because config file hidden from File Manager:

                and you're right. it's the best booking app ive come across, paid or free.

                It's pretty much the only one that actively supports lots of CalDAV calendars too, which is a must if self-hosting your own calendar. Most only support Big Tech calendar.s Cal.com for the win!

                I use Cloudron with Gandi & Hetzner

                1 Reply Last reply
                0
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                  • Login

                  • Don't have an account? Register

                  • Login or register to search.
                  • First post
                    Last post
                  0
                  • Categories
                  • Recent
                  • Tags
                  • Popular
                  • Bookmarks
                  • Search