---
title: "TYPO3 Exception 1588095935"
manual: "TYPO3 Exceptions"
version: "main"
permalink: "https://docs.typo3.org/permalink/t3exceptions:typo3-exception-1588095935"
source: "Exceptions/1588095935.rst"
modified: "2026-09-16T07:39:08+00:00"
---

# TYPO3 Exception 1588095935

> [!NOTE]
> Below, the TYPO3 community may have provided additional information or
> solutions for this exception. However, these may or may not apply to your
> particular case. If you can provide more information, you should come back
> here and add your experience and solution steps to this issue once you have
> resolved it.
>
> General TYPO3 troubleshooting tips can be found in the *Troubleshooting*
> section in the menu. You can also ask questions and receive support in the
> [TYPO3 Questions category on talk.typo3.org](https://talk.typo3.org/c/typo3-questions/).
>
> To add your experience, click "Edit on GitHub" above and follow the
> ["Edit on GitHub" workflow](https://docs.typo3.org/m/typo3/docs-how-to-document/main/en-us/Howto/EditOnGithub.html#docs-contribute-github-method).
> Also check out
> [our tip on Coding Style and reST](https://docs.typo3.org/permalink/t3exceptions:tip-about-rest-coding-style).

## TYPO3\\CMS\\Core\\Http\\Security\\MissingReferrerException

```text
#1588095935 TYPO3\CMS\Core\Http\Security\MissingReferrerException
Missing referrer for /main
```

This error occurs when logging into the backend or Install Tool and is
triggered by a failed check of the `Referer` header.

The reason for this may be:

-   the use of an HTTP proxy, e.g. a reverse proxy to an encapsulated system without sufficient header delegation
-   the webserver is not configured correctly to use a valid certificate

### Solution

-   Check whether the HTTPS proxy is configured correctly.
-   Check whether the values for the variables are correct:

    -   [$GLOBALS\['TYPO3_CONF_VARS'\]\['SYS'\]\['reverseProxySSL'\]](https://docs.typo3.org/m/typo3/reference-coreapi/main/en-us/Configuration/Typo3ConfVars/SYS.html#confval-globals-typo3-conf-vars-sys-reverseproxyssl)
    -   [$GLOBALS\['TYPO3_CONF_VARS'\]\['SYS'\]\['reverseProxyIP'\]](https://docs.typo3.org/m/typo3/reference-coreapi/main/en-us/Configuration/Typo3ConfVars/SYS.html#confval-globals-typo3-conf-vars-sys-reverseproxyip)
    -   [$GLOBALS\['TYPO3_CONF_VARS'\]\['SYS'\]\['trustedHostsPattern'\]](https://docs.typo3.org/m/typo3/reference-coreapi/main/en-us/Configuration/Typo3ConfVars/SYS.html#confval-globals-typo3-conf-vars-sys-trustedhostspattern)
-   Check whether the HTTPS connection is secured by a valid certificate.

The security check for the correct referrer was introduced due to potential security risks,
visit the related [security advisory](https://typo3.org/security/advisory/typo3-core-sa-2020-006)
for more information.

It is recommended that you keep this feature enabled, but it can be enabled or disabled in
**Admin Tools > Settings > Configure Installation-Wide Options > System > \[SYS\]\[features\]\[security.backend.enforceReferrer\]**.
