# CSRF Cookies in 6.4.20 abstellen?

**URL:** <https://forum.shopware.com/t/csrf-cookies-in-6-4-20-abstellen/103616>\
**Category:** Shopware 6 (German)\
**Created:** [9. April 2024 um 10:33 UTC](https://forum.shopware.com/t/csrf-cookies-in-6-4-20-abstellen/103616 "2024-04-09T10:33:08Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![hkn11](https://avatars.discourse-cdn.com/v4/letter/h/258eb7/32.png) [@hkn11](https://forum.shopware.com/u/hkn11)\
**Post date:** [9. April 2024 um 10:33 UTC](https://forum.shopware.com/t/csrf-cookies-in-6-4-20-abstellen/103616/1 "2024-04-09T10:33:08Z")

</div>

Hallo zusammen

CSRF wird ja in 6.6 bereits abgestellt: [Deprecate the storefront CSRF implementation | Shopware Documentation](https://developer.shopware.com/docs/resources/references/adr/2022-11-16-deprecate-csrf.html)

Die Frage ist, wie kann ich das in älteren Versionen manuell abstellen? Habs über die Symfomy docs mal via framework.yaml versucht, ohne Erfolg:

![image](https://europe1.discourse-cdn.com/flex013/uploads/shopware/original/3X/1/2/1235e1ea02020fdca20f86df80658587ac6c0941.png)

Folgender Ansatz ist auch drin - aber die Cookies erscheinen dennoch:

> **[SameSite protection | Shopware Documentation](https://developer.shopware.com/docs/guides/hosting/configurations/framework/samesite-protection.html)**
>
> Documentation for Shopware developers
