<context-param>
<param-name>GEOSERVER_CSRF_WHITELIST</param-name>
<param-value>yourdomain.com</param-value>
</context-param>