Could you please print the output of var_dump($form->getCsrfProvider())?
In Symfony\Component\Form\CsrfProvider\DefaultCsrfProvider there is the line return sha1($this->secret.$pageId.$this->getSessionId()); within generateCsrfToken(). Please do also output the secret, page ID and session ID in this method call. All three variables should be the same before and after the form submission. Bernhard -- Software Architect & Engineer Blog: http://webmozarts.com Twitter: http://twitter.com/webmozart 2011/2/8 Damien Filiatrault <damien...@gmail.com>: > I am having the EXACT same problem. > > -- > If you want to report a vulnerability issue on symfony, please send it to > security at symfony-project.com > > You received this message because you are subscribed to the Google > Groups "symfony users" group. > To post to this group, send email to symfony-users@googlegroups.com > To unsubscribe from this group, send email to > symfony-users+unsubscr...@googlegroups.com > For more options, visit this group at > http://groups.google.com/group/symfony-users?hl=en > -- If you want to report a vulnerability issue on symfony, please send it to security at symfony-project.com You received this message because you are subscribed to the Google Groups "symfony users" group. To post to this group, send email to symfony-users@googlegroups.com To unsubscribe from this group, send email to symfony-users+unsubscr...@googlegroups.com For more options, visit this group at http://groups.google.com/group/symfony-users?hl=en