Article - CS267610

Error "Error occurred while validating HTTP header: cookie" is being logged every second in application and error log in ThingWorx Platform

Modified: 26-Mar-2024   


Applies To

  • ThingWorx Platform 7.4 to 9.4
  • Vuforia Experience Service 9.17.0

Description

  • Error "Error occurred while validating HTTP header: cookie" is being logged every second in Application Log and Error Log in ThingWorx Platform and thus filling up the disk space with huge logs file size.
    [L: ERROR] [O: E.c.t.s.f.ValidatingHttpRequest] [I: ] [U: <User>] [S: ] [P: ] [T: https-jsse-nio-443-exec-39] Error occurred while validating HTTP header: cookie. HTTP header value: cookie: Invalid input. Please conform to regex ^[a-zA-Z0-9()\-=\*\.\?;,+\/:&_|% ]*$ with a maximum length of 30000 
    [L: ERROR] [O: E.c.t.s.f.ValidatingHttpRequest] [I: ] [U: <User>] [S: ] [P: ] [T: https-jsse-nio-443-exec-9] Error occurred while validating HTTP header: cookie. Input validation failure
    
  • Following is logged every second user is logged in ThingWorx composer in Application Log:
[L: ERROR] [O: E.c.t.s.f.ValidatingHttpRequest] [I: ] [U: ] [S: ] [T: http-nio-8080-exec-22] Error occurred while validating HTTP header: cookie
  • Issue is occurring on existing ThingWorx 7.4.0 installation, it wasn't upgraded from older version
  • Logs flooded with error:
Error occurred while validating HTTP header: cookie
  • Authentication request failed with the error message:
org.springframework.security.authentication.AuthenticationServiceException: Error decoding incoming SAML message
  • Need help setting these in the Json file
  • Is it recommended to increase the value of HTTPRequestHeaderMaxLength in platform-settings.json file to 50000?
  • Need an example of platform-settings.json file with the required changes
  • Error continues to log despite having validation regex to be ^.*$
  • This issue should have been fixed with the Jira tickets noted in the article CS227933
This is a printer-friendly version of Article 267610 and may be out of date. For the latest version click CS267610