Symantec Privileged Access Management

 View Only
  • 1.  PAM Error Message=>PAM-CMN-0014

    Broadcom Employee
    Posted Feb 12, 2019 05:31 AM

    We are seeing "PAM-CMN-0014: Same origin policy violation; possible cross-site request forgery" error message in CA PAM logs. Not sure what is triggering this.

    Anyone seen this type of error in past? If so can you pls provide some inputs on this error?



  • 2.  Re: PAM Error Message=>PAM-CMN-0014
    Best Answer

    Broadcom Employee
    Posted Feb 15, 2019 06:53 AM

    Hello Lakshman,

     

    Confirm you have at least CA PAM 3.0.3 in place - best update to the current version 3.2.4
    There was an issue which is fixed in the current release
    DE334307     Potential Cross-Site Request Forgery (CSRF) vulnerabilities.

     

    Should the issue remain please try switching off XSS Checks (should you have it enabled) following
    https://docops.ca.com/ca-privileged-access-manager/3-2-4/en/implementing/configuring-your-server/configure-security-settings/disable-and-enable-cross-site-scripting-attack-checking/

    and see if this makes a difference anyway.

     

    If needed please open a formal Support Case with us to follow up this issue.