Sorry for the delay in responding.
I was looking at this error specifically and investigating:
/var/log/ondemand-nginx/<USER>/error.log
...
App 2316025 output: [2025-07-31 09:42:49 -0500 ] FATAL "[f203c030-5ab1-4711-bf6c-e56e11964548]
[f203c030-5ab1-4711-bf6c-e56e11964548] ActionController::InvalidAuthenticityToken (Can't verify CSRF token authenticity.):
[f203c030-5ab1-4711-bf6c-e56e11964548]
Looking around I did find something similar here:
The setting they used to resolve their issue in the ood_portal.yml was:
custom_location_directives:
- 'RequestHeader set X-Forwarded-Proto "https"'
And looking at the request header you shared above I’m not seeing that set at the moment. Try that with a restart of httpd and hopefully that moves you all along.