Massive Issues after enabling 'Enable Gallery Sessions'

I enabled Federated Logon, and then Enabled Gallery Sessions, and now every single admin page that I click forces me to re-login.

Even after submitting a change to any settings, it takes me to the login page, I login again, and then it loads the main admin page with a message saying ""saveoptions" Cross Site Request Forgery blocked." and my selected option doesn't get applied.

Basically, my gallery is now completely useless. I can't even use the backup/restore database option to restore it to yesterday.

Where is this session/cookie toggle located so I can simply try flipping it back? I've looked through the database under zp_options... But couldn't see anything really related.

Could anyone please help with this? I'll start over if absolutely necessary, but that's a bit of a pain.

Much appreciated!

Comments

  • Can't really answer your question as you have failed to tell us what version of Zenphoto you are running and that is critical to the answer.
  • I'm running the latest version. Zenphoto version 1.4.1.6 [8326] (Official Build)
  • I forgot to mention, I tried this from both Firefox 9.0.1 and Safari 5.1.2. Same issue on both, going to any option page results in a login form, logging in will work, changing an option and saving results in another login form, and after logging in redirects back to the main admin site with the ""saveoptions" Cross Site Request Forgery blocked." error message...

    --Edit--
    Also, my security log shows this, if its any help. :) (Usernames/IP masked, everything else untouched.)

    2012-01-14 12:58:04 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:00:56 72.29.*.* Blocked access Failed /zp-core/admin-options.php?action=saveoptions
    2012-01-14 13:00:58 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:00:59 72.29.*.* XSRF access blocked usrname Name Failed saveoptions
    2012-01-14 13:09:25 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:17:27 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:17:31 72.29.*.* Blocked access Failed /zp-core/admin-options.php?page=options&tab=general
    2012-01-14 13:17:37 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:17:44 72.29.*.* Blocked access Failed /zp-core/admin-options.php?action=saveoptions
    2012-01-14 13:19:11 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:19:16 72.29.*.* Blocked access Failed /zp-core/admin-options.php?page=options&tab=general
    2012-01-14 13:19:25 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:19:30 72.29.*.* Blocked access Failed /zp-core/admin-options.php?action=saveoptions
    2012-01-14 13:19:36 72.29.*.* Admin login usrname Name Success zp_admin
    2012-01-14 13:19:37 72.29.*.* XSRF access blocked usrname Name Failed saveoptions
  • There is an entry in the options table named `gallery_data` that is a serialized array of the gallery options. The element you want is the 'album_session` index.
  • Thank you very very much sbillard! That fixed it right up.

    I really appreciate your prompt responses! :) I love Zen Gallery by the way, A friend had a gallery up, and I tried it quite awhile back, but gave it a second go yesterday, and it has come a long way, much easier to publish/add pictures.

    Thanks again!
Sign In or Register to comment.