<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AUthorize.net hosted payment page not working in Chrome Version 60 in Integration and Testing</title>
    <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/62863#M37102</link>
    <description>&lt;P&gt;&amp;nbsp;i m also getting same error on Chrome browzer..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Refused to display '&lt;A href="https://mysiteurl.com/scripts/IFrameCommunicator.html#action=resizeWindow&amp;amp;width=736&amp;amp;height=401" target="_blank"&gt;https://mysiteurl.com/scripts/IFrameCommunicator.html#action=resizeWindow&amp;amp;width=736&amp;amp;height=401&lt;/A&gt;' in a frame because it set 'X-Frame-Options' to 'sameorigin'.&lt;BR /&gt;15:20:54.600&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any Sloution on this...&lt;/P&gt;</description>
    <pubDate>Fri, 27 Apr 2018 10:00:12 GMT</pubDate>
    <dc:creator>ioiki</dc:creator>
    <dc:date>2018-04-27T10:00:12Z</dc:date>
    <item>
      <title>AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59271#M33867</link>
      <description>&lt;P&gt;We are getting this error&lt;/P&gt;&lt;P&gt;on the click of submit on the hosted payment form.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed to execute 'postMessage' on 'DOMWindow': The target origin provided ('&lt;A href="https://xxxx.xxx.com" target="_blank"&gt;https://xxxx.xxx.com&lt;/A&gt;') does not match the recipient window's origin ('null').&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I read some documentation in internet and noted the problem there mentioned as well . Adding for reference&lt;BR /&gt;&lt;A href="https://groups.google.com/a/chromium.org/forum/#!topic/blink-dev/fsDaKFqvU20" target="_blank"&gt;https://groups.google.com/a/chromium.org/forum/#!topic/blink-dev/fsDaKFqvU20&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;The hosted payment iframe failing Chrome60 , but is working in other browsers (namely Firefox/IE)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please advise ,&lt;/P&gt;</description>
      <pubDate>Wed, 09 Aug 2017 16:07:14 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59271#M33867</guid>
      <dc:creator>debasishbose2k</dc:creator>
      <dc:date>2017-08-09T16:07:14Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59276#M33872</link>
      <description>&lt;P&gt;Check out &lt;A href="https://nexwebsites.com/authorizenet/" target="_blank"&gt;https://nexwebsites.com/authorizenet/&lt;/A&gt; with your version of Chrome, as I am now with Chrome Version 60.0.3112.90. If you get no error message, it's&amp;nbsp;your implementation.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Aug 2017 17:52:12 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59276#M33872</guid>
      <dc:creator>NexusSoftware</dc:creator>
      <dc:date>2017-08-09T17:52:12Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59287#M33882</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/22147"&gt;@debasishbose2k&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Even if this ends up being something on your side, please share details with us here. I'd like to be able to prevent anyone else from running into whatever problem you've run into.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;How are you calling the payment form, by redirecting the browser or embedding into an iframe?&lt;/LI&gt;
&lt;LI&gt;Are you posting an iFrameCommunicator URL in your token request?&lt;/LI&gt;
&lt;LI&gt;Anywhere we can see the code or see the website in action?&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Wed, 09 Aug 2017 23:57:32 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59287#M33882</guid>
      <dc:creator>Aaron</dc:creator>
      <dc:date>2017-08-09T23:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59309#M33902</link>
      <description>&lt;P&gt;I seem to have hit the same problem.&amp;nbsp; In my case, the payment form is embedded in an iframe and I am sending an iFrameCommunicator URL in the token request.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The payment form would work in Firefox (54.0.1), but not in Chrome (60.0.3112.90).&amp;nbsp; In the Chrome console, the following error would display when the payment form loaded into the iframe:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Refused to display 'https://xxxxxx/system/payment/iframecommunicator.html?procData=xxxxxxxxxxxxxxxxx#action=resizeWindow&amp;amp;width=935&amp;amp;height=864' in a frame because it set 'X-Frame-Options' to 'sameorigin'.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The web server was sending the header:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;X-Frame-Options: SAMEORIGIN&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when the iframe communicator page was sent back.&amp;nbsp; Elliminating that header for the iframe communicator response does allow the form to post the result of the charge back to the application.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 16:21:29 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59309#M33902</guid>
      <dc:creator>rcourtois</dc:creator>
      <dc:date>2017-08-10T16:21:29Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59317#M33910</link>
      <description>&lt;P&gt;I can confirm, same error in Chrome 60.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here is the link to the google page that explains that change (and confirms that it was released in Chrome 60)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.chromestatus.com/feature/4678102647046144" target="_self"&gt;https://www.chromestatus.com/feature/4678102647046144&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Trying a&amp;nbsp;&lt;SPAN&gt;Content-Security-Policy header to fix it. &amp;nbsp;Will report back with results.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy/frame-ancestors" target="_self"&gt;https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy/frame-ancestors&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 17:54:40 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59317#M33910</guid>
      <dc:creator>wundbread</dc:creator>
      <dc:date>2017-08-10T17:54:40Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59324#M33917</link>
      <description>&lt;P&gt;Unfortunately the X-Frame-Options: sameorigin header seems to win over a Content-Secuirty-Policy: frame-ancestors right now, so I am forced to remove the X-Frame-Options header and add a CSP header event though it only works for some web browers.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 19:07:01 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59324#M33917</guid>
      <dc:creator>wundbread</dc:creator>
      <dc:date>2017-08-10T19:07:01Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59332#M33925</link>
      <description>&lt;P&gt;These are the answers&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are embedding the payment form in an iframe&lt;/P&gt;&lt;P&gt;We pass the irame url in the token request&lt;/P&gt;&lt;P&gt;YEs , I can schedule a webex (today 3-6 PM PST) or Friday (9-6 pm PST)&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 21:23:26 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59332#M33925</guid>
      <dc:creator>debasishbose2k</dc:creator>
      <dc:date>2017-08-10T21:23:26Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59336#M33928</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/22147"&gt;@debasishbose2k&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the response and the offer to conference about this. I apologize, but I'll actually be out of the office until Monday. If we haven't come up with good ways to duplicate this or reliable recommendations of how to avoid this by then, I'll definitely want to get together with you next week.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 22:51:56 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59336#M33928</guid>
      <dc:creator>Aaron</dc:creator>
      <dc:date>2017-08-10T22:51:56Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59347#M33939</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/20843"&gt;@Aaron&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's true, this is a valid issue with the newest versions of Chrome.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The X-Frame-Options directives are deprecated, the modern alternative is the Content-Security-Policy header, which along with many other policies can white-list what URLs are allowed to host your page in a frame, using the frame-ancestors directive, frame-ancestors supports multiple domains and even wildcards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;One way to resolve this issue on Apache is to use the following in your .htaccess file.&lt;/P&gt;&lt;PRE&gt;Header set Content-Security-Policy "frame-ancestors 'self' *.YOUR_WEBSITE.com *.authorize.net"&lt;/PRE&gt;&lt;P&gt;Or for a specific file:&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;&amp;lt;Files iCommunicator.html&amp;gt;
Header set Content-Security-Policy "frame-ancestors 'self' *.YOUR_WEBSITE.com *.authorize.net"
&amp;lt;/Files&amp;gt;&lt;/PRE&gt;&lt;P&gt;See a working example at :&amp;nbsp;&lt;A href="https://nexwebhost.com/authorizenet/gethosted.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://nexwebhost.com/authorizenet/gethosted.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 15:16:19 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59347#M33939</guid>
      <dc:creator>NexusSoftware</dc:creator>
      <dc:date>2017-08-11T15:16:19Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59405#M33993</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would like to confirm that the Hosted payment page did work in our environments once we added the Content Security Policy Header in the request . &amp;nbsp;THe x-frame header request seems to be deprecated by Chrome in Version 60(as suggested by other developers) , and eventually be for other modern browsers. We changed our setting to add the new Attribute in header and that helped it to work seamlessly.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and regards&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Debasish&lt;/P&gt;</description>
      <pubDate>Wed, 16 Aug 2017 16:53:42 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59405#M33993</guid>
      <dc:creator>debasishbose2k</dc:creator>
      <dc:date>2017-08-16T16:53:42Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59408#M33994</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/22147"&gt;@debasishbose2k&lt;/a&gt;,&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/21608"&gt;@NexusSoftware&lt;/a&gt;, and everyone else on this thread for sharing your experiences. We've got a good understanding of the challenges now. From a documentation perspective, we'll try to come up with ways to help people understand the ins and outs of frame security and give some recommendations. We also have engineers looking at what possible solutions we can implement on our end.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Again, thanks!&lt;/P&gt;</description>
      <pubDate>Wed, 16 Aug 2017 18:26:06 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59408#M33994</guid>
      <dc:creator>Aaron</dc:creator>
      <dc:date>2017-08-16T18:26:06Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59464#M34047</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for posting the solution.&lt;/P&gt;&lt;P&gt;I have a question related to this. Since X-Frames is deprecated, does CSP server the same purpose from other servers to not allow framing.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Aug 2017 16:24:48 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59464#M34047</guid>
      <dc:creator>vallapus</dc:creator>
      <dc:date>2017-08-21T16:24:48Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59491#M34074</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/22211"&gt;@vallapus&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It's my understanding that it does, but it may not be as simple as just replacing one header with another, depending on which browsers you're trying to support. You may have to determine whether your targeted browsers all support the aspects of CSP that you want, and if not, come up with some hybrid approach.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Aug 2017 23:51:29 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59491#M34074</guid>
      <dc:creator>Aaron</dc:creator>
      <dc:date>2017-08-22T23:51:29Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59777#M34350</link>
      <description>&lt;P&gt;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/20843"&gt;@Aaron&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are also facing same issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you please update the implementation document with some proper hybrid approach.&lt;/P&gt;&lt;P&gt;Also it would be helpful if authorize.net publish this on news and update page.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I will try with the solution suggested by&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/21608"&gt;@NexusSoftware&lt;/a&gt;&amp;nbsp;and come up with result.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Sep 2017 09:35:32 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59777#M34350</guid>
      <dc:creator>raviparmarce88</dc:creator>
      <dc:date>2017-09-13T09:35:32Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59781#M34354</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/21421"&gt;@raviparmarce88&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the input.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This isn't really a problem specific to us, but to anyone using any CSP headers or X-Frame-Options on their sites. If you don't use those headers, there's no problems with our forms, and if you do, you will run into different behavior on newer browsers when you start getting into frames within frames like this, whether we're involved or not.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If&amp;nbsp;someone runs into that problem with our services, we still want to help them as much as we can, though. I'll make sure we at least address this in our developer FAQ, although a blog post would be a good idea. I'd like to encourage more people to think about security anyway, so a blog post walking someone through the "right" way to lock down our frames would definitely be useful.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Sep 2017 16:23:48 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/59781#M34354</guid>
      <dc:creator>Aaron</dc:creator>
      <dc:date>2017-09-13T16:23:48Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/62863#M37102</link>
      <description>&lt;P&gt;&amp;nbsp;i m also getting same error on Chrome browzer..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Refused to display '&lt;A href="https://mysiteurl.com/scripts/IFrameCommunicator.html#action=resizeWindow&amp;amp;width=736&amp;amp;height=401" target="_blank"&gt;https://mysiteurl.com/scripts/IFrameCommunicator.html#action=resizeWindow&amp;amp;width=736&amp;amp;height=401&lt;/A&gt;' in a frame because it set 'X-Frame-Options' to 'sameorigin'.&lt;BR /&gt;15:20:54.600&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any Sloution on this...&lt;/P&gt;</description>
      <pubDate>Fri, 27 Apr 2018 10:00:12 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/62863#M37102</guid>
      <dc:creator>ioiki</dc:creator>
      <dc:date>2018-04-27T10:00:12Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/63685#M37751</link>
      <description>&lt;P&gt;Any ideas on this? I've read through all the posts on the iframe on the forum and not having much luck getting the communicator to work because of the 'sameorigin' issue&lt;/P&gt;</description>
      <pubDate>Thu, 12 Jul 2018 20:45:34 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/63685#M37751</guid>
      <dc:creator>daskjeeves</dc:creator>
      <dc:date>2018-07-12T20:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/67450#M40855</link>
      <description>&lt;P&gt;&amp;nbsp;am also getting this issue recently in my chrome&amp;nbsp;&lt;SPAN&gt;Version 67.0.3396.99 (Official Build) (64-bit).&lt;BR /&gt;&lt;BR /&gt;Failed to execute 'postMessage' on 'DOMWindow': The target origin provided (server URL on https) does not match the recipient window's origin ('&lt;A href="https://test.authorize.net" target="_blank" rel="noopener"&gt;https://test.authorize.net&lt;/A&gt;').&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;same for production.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2019 13:25:50 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/67450#M40855</guid>
      <dc:creator>Vikas_chauhan</dc:creator>
      <dc:date>2019-04-19T13:25:50Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/73144#M45253</link>
      <description>&lt;P&gt;&lt;A href="mailto:developer@authorize.net" target="_blank"&gt;H&lt;/A&gt;ey fellow Developers,&amp;nbsp;&lt;BR /&gt;I too face the similar issue.&amp;nbsp;&lt;BR /&gt;I am using hosted form in Laravel framework.&amp;nbsp;&lt;BR /&gt;Now tricky part is that I am only getting this issue when iframecommuicator return url is under Laravel auth. Post removing from auth, it is working fine and no domwindow or corss origin error.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I have tried adding "allowing cross origin requests in Laravel routes too" with no success.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;If any one can suggest configuration or setting here specifically to get rid of this issue.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;P.S. This issue only happens in chrome and not in firefox.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Sep 2020 11:53:45 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/73144#M45253</guid>
      <dc:creator>introin</dc:creator>
      <dc:date>2020-09-08T11:53:45Z</dc:date>
    </item>
    <item>
      <title>Re: AUthorize.net hosted payment page not working in Chrome Version 60</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/74512#M46321</link>
      <description>&lt;P&gt;We are having the same issue and applying the content-security-policy via web.config file (asp.net/IIS) is not working. We are passing a paymentProfileId in the token.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;We are still seeing the error in the console.&lt;UL&gt;&lt;LI&gt;Failed to execute 'postMessage' on 'DOMWindow': The target origin provided ('our domain') does not match the recipient window's origin ('auth.net domain')&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;The payment gets cut off and is not the correct size so you cannot see all of the fields.&lt;/LI&gt;&lt;LI&gt;The purchase window does not close after a purchase.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Example of web.config:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;lt;httpProtocol&amp;gt;&lt;BR /&gt;&amp;lt;customHeaders&amp;gt;&lt;BR /&gt;&amp;lt;add name="Content-Security-Policy" value="frame-ancestors 'self' https://localhost:44300 *.ourdomain.com *.authorize.net" /&amp;gt;&lt;BR /&gt;&amp;lt;/customHeaders&amp;gt;&lt;BR /&gt;&amp;lt;/httpProtocol&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;We have even tried with the&amp;nbsp;Content-Security-Policy-Report-Only but still no luck, it acts the same.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What can we do when the content-security-policy is not working?&lt;/P&gt;</description>
      <pubDate>Thu, 31 Dec 2020 16:59:23 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/AUthorize-net-hosted-payment-page-not-working-in-Chrome-Version/m-p/74512#M46321</guid>
      <dc:creator>jfkrueger</dc:creator>
      <dc:date>2020-12-31T16:59:23Z</dc:date>
    </item>
  </channel>
</rss>

