HTTP 403 Forbidden SharePoint 2010 CA - только в IE, но не в FireFox
Когда я пытался получить доступ к SharePoint CA с клиента после установки, я получал эту ошибку "HTTP 403 Forbidden" только при использовании IE. Я попробовал все, но когда я переключаю браузер на Firefox, я получаю всплывающее окно проверки подлинности Windows.
Я думал, что это проблема с брандмауэром, или я сделал что-то не так при установке SharePoint, но я думаю, что это как-то связано с IE и заголовком запроса.
Любая идея?
GET http://srv002:9999/ HTTP/1.1
Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms-application, application/xaml+xml, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*
Accept-Language: en-US
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E; InfoPath.3)
Accept-Encoding: gzip, deflate
Connection: Keep-Alive
Host: srv002:9999
HTTP/1.1 401 Unauthorized
Server: Microsoft-IIS/7.5
SPRequestGuid: 9cfc2a00-39ef-41f6-b89f-d63239b4afb3
WWW-Authenticate: NTLM
X-Powered-By: ASP.NET
MicrosoftSharePointTeamServices: 14.0.0.7106
X-MS-InvokeApp: 1; RequireReadOnly
Date: Tue, 04 Feb 2014 07:08:54 GMT
Content-Length: 0
Proxy-Support: Session-Based-Authentication
------------------------------------------------------------------
GET http://srv002:9999/ HTTP/1.1
Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms-application, application/xaml+xml, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*
Accept-Language: en-US
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E; InfoPath.3)
Accept-Encoding: gzip, deflate
Connection: Keep-Alive
Host: srv002:9999
Authorization: NTLM TlRMTVNTUAABAAAAB4IIogAAAAAAAAAAAAAAAAAAAAAGAbEdAAAADw==
HTTP/1.1 401 Unauthorized
Server: Microsoft-IIS/7.5
SPRequestGuid: 40ae372c-acba-4800-b684-1a4751169fc3
WWW-Authenticate: NTLM TlRMTVNTUAACAAAABgAGADgAAAAFgomicjttOyWACKEAAAAAAAAAAIAAgAA+AAAABgGxHQAAAA9TAE0ARgACAAYAUwBNAEYAAQAMAFMAUgBWADAAMAAyAAQAFABzAG0AZgAuAGcAbwB2AC4AcwBhAAMAIgBTAHIAdgAwADAAMgAuAHMAbQBmAC4AZwBvAHYALgBzAGEABQAUAHMAbQBmAC4AZwBvAHYALgBzAGEABwAIAG0GvfZ3Ic8BAAAAAA==
X-Powered-By: ASP.NET
MicrosoftSharePointTeamServices: 14.0.0.7106
X-MS-InvokeApp: 1; RequireReadOnly
Date: Tue, 04 Feb 2014 07:08:54 GMT
Content-Length: 0
Proxy-Support: Session-Based-Authentication
------------------------------------------------------------------
GET http://srv002:9999/ HTTP/1.1
Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms-application, application/xaml+xml, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*
Accept-Language: en-US
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E; InfoPath.3)
Accept-Encoding: gzip, deflate
Connection: Keep-Alive
Authorization: NTLM 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
Host: srv002:9999
HTTP/1.1 302 Found
Content-Type: text/html; charset=utf-8
Location: http://srv002:9999/_layouts/AccessDenied.aspx?Source=http%3A%2F%2Fsrv002%3A9999
Server: Microsoft-IIS/7.5
SPRequestGuid: 69b66e7a-3211-4023-8abb-3dc9847c6e86
Persistent-Auth: true
X-Powered-By: ASP.NET
MicrosoftSharePointTeamServices: 14.0.0.7106
X-MS-InvokeApp: 1; RequireReadOnly
Date: Tue, 04 Feb 2014 07:08:54 GMT
Content-Length: 196
------------------------------------------------------------------
GET http://srv002:9999/_layouts/AccessDenied.aspx?Source=http%3A%2F%2Fsrv002%3A9999 HTTP/1.1
Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms-application, application/xaml+xml, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*
Accept-Language: en-US
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E; InfoPath.3)
Accept-Encoding: gzip, deflate
Connection: Keep-Alive
Authorization: NTLM TlRMTVNTUAABAAAAB4IIogAAAAAAAAAAAAAAAAAAAAAGAbEdAAAADw==
Host: srv002:9999
HTTP/1.1 401 Unauthorized
Server: Microsoft-IIS/7.5
SPRequestGuid: b66fc0f0-0a2c-4172-81a8-1c9e372ca6ba
WWW-Authenticate: NTLM TlRMTVNTUAACAAAABgAGADgAAAAFgomiurTeqPQpMIgAAAAAAAAAAIAAgAA+AAAABgGxHQAAAA9TAE0ARgACAAYAUwBNAEYAAQAMAFMAUgBWADAAMAAyAAQAFABzAG0AZgAuAGcAbwB2AC4AcwBhAAMAIgBTAHIAdgAwADAAMgAuAHMAbQBmAC4AZwBvAHYALgBzAGEABQAUAHMAbQBmAC4AZwBvAHYALgBzAGEABwAIABfJwfZ3Ic8BAAAAAA==
X-Powered-By: ASP.NET
MicrosoftSharePointTeamServices: 14.0.0.7106
X-MS-InvokeApp: 1; RequireReadOnly
Date: Tue, 04 Feb 2014 07:08:54 GMT
Content-Length: 0
Proxy-Support: Session-Based-Authentication
------------------------------------------------------------------
GET http://srv002:9999/_layouts/AccessDenied.aspx?Source=http%3A%2F%2Fsrv002%3A9999 HTTP/1.1
Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms-application, application/xaml+xml, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*
Accept-Language: en-US
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E; InfoPath.3)
Accept-Encoding: gzip, deflate
Connection: Keep-Alive
Authorization: NTLM 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
Host: srv002:9999
HTTP/1.1 403 Forbidden
Cache-Control: private
Transfer-Encoding: chunked
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.5
SPRequestGuid: ac436a2d-eadc-4a98-a382-be0432840d60
X-AspNet-Version: 2.0.50727
Set-Cookie: ASP.NET_SessionId=yxptiwufledck2452zqacr2f; path=/; HttpOnly
Persistent-Auth: true
X-Powered-By: ASP.NET
MicrosoftSharePointTeamServices: 14.0.0.7106
X-MS-InvokeApp: 1; RequireReadOnly
Date: Tue, 04 Feb 2014 07:08:54 GMT
------------------------------------------------------------------
2 ответа
HTTP/403 предполагает, что Internet Explorer автоматически ответил на более ранний запрос HTTP/401 на учетные данные, автоматически отправив учетные данные текущего пользователя, которые, по мнению сервера, были недопустимы для целевого ресурса. Следовательно, он вернул HTTP/403 Доступ запрещен.
Firefox, напротив, не отвечает на вызов HTTP/401, автоматически отправляя учетные данные пользователей Windows, и поэтому отображается диалог учетных данных.
Если вы отправляете точно такие же учетные данные в диалоговом окне учетных данных Firefox, вы должны получить тот же ответ HTTP/403 в этот момент.
Я нашел решение. Мне пришлось удалить URL-адрес центра администрирования SharePoint в настройках безопасности IE из локальной интрасети и поместить его на доверенный сайт, чтобы я мог редактировать пользовательский уровень> Аутентификация пользователя> вход в систему> Запрос имени пользователя и пароля.