You are viewing a plain text version of this content. The canonical link for it is here.
Posted to notifications@superset.apache.org by GitBox <gi...@apache.org> on 2022/11/30 20:15:12 UTC

[GitHub] [superset] cwegener commented on issue #22258: 403 Forbidden error when trying to embed a dashboard & view it using a guest user token

cwegener commented on issue #22258:
URL: https://github.com/apache/superset/issues/22258#issuecomment-1332688288

   The first thing to try would be to remove ALL the allowed domains and leave the field empty.
   
   Background: The allowed domains field is *incorrectly* labeled in the UI. What this field does is to check the "Referer" header and compare it against the values in  this field, which is IMO a bit awkward.
   
   Relevant discussion in Slack.
   https://apache-superset.slack.com/archives/C01EP56QGTS/p1663143592850569?thread_ts=1663071066.037159&cid=C01EP56QGTS
   
   If that doesn't help, the next step is to investigate the Guest permissions configuration.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@superset.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


---------------------------------------------------------------------
To unsubscribe, e-mail: notifications-unsubscribe@superset.apache.org
For additional commands, e-mail: notifications-help@superset.apache.org