IIS Server Security - "The page cannot be displayed" for non domain users

This is Interesting: Free IT Magazines  
Home > Archive > IIS Server Security > February 2006 > "The page cannot be displayed" for non domain users





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author "The page cannot be displayed" for non domain users
Bart

2006-02-01, 7:51 am

Hi, I have an intranet situation where I connect to the lan with my laptop,
but I'm not a member of the domain.
the IIS is hosting a 'MyProfile' website based on asp.net 2.0 with NTLM
security enabled and anonymous disabled.
I can ping 'MyProfile' but when I try to browse to http://MyProfile I get a
"page cannot by displayed".
Domain users can access http://MyProfile without any problem.
It is not a dns issue because I can access another intranet site (WSS) on
the same IIS (and he is asking for NTLM credentials, witch not happen on the
other site).
Also the log file is registering my request, so it really goes through the
IIS.
Please help
Bart

WenJun Zhang[msft]

2006-02-02, 2:54 am

Hi Bart,

Let's use webfetch to trace the rawdata of http request/response and
determine if the problem is actually on server-side.

HOW TO: Use Wfetch.exe to Troubleshoot HTTP Connections
http://support.microsoft.com/defaul...kb;en-us;284285

To use, please input:

Host: (Your servername)
Path: (The relative path of your page. e.g: /simple.htm)
Auth: (in case the site is anonymous enabled, just use Anonymous, otherwise
please specify proper user credential)

Press Go! to issue to http request to the server and check what response is
returned. I think the trace should slow us with the details. Please paste
the whole log data here.

I'll wait for your update. Thanks.

Best regards,

WenJun Zhang
Microsoft Online Partner Support

This posting is provided "AS IS" with no warranties, and confers no rights.



Bart

2006-02-06, 2:58 am

Hi WenJun,

It is strange. The Wfetch utility is able to get true.
The first atemp returns the page I get in the IE. He is doing a second atemp
(with NTLM) and he get true.
When I use IE I never get the NTLM authentication window:
see my wfetch log below:

started....WWWConnect::Connect("myprofile","80")\nIP =
"192.168.1.11:80"\nsource port: 1193\r\n
SEC_I_CONTINUE_NEEDED - InitializeSecurityContext\nREQUEST:
**************\nGET /company.aspx HTTP/1.1\r\n
Host: myprofile\r\n
Accept: */*\r\n
Connection: Keep-Alive\r\n
Authorization: NTLM
TlRMTVNTUAABAAAAl4II4gAAAAAAAAAAAAAAAAAA
AAAFASgKAAAADw==\r\n
\r\n
RESPONSE: **************\nHTTP/1.1 401 Unauthorized\r\n
Content-Length: 1539\r\n
Content-Type: text/html\r\n
Server: Microsoft-IIS/6.0\r\n
WWW-Authenticate: NTLM
TlRMTVNTUAACAAAAEAAQADgAAAAVgoniF+bxxag5
VoQAAAAAAAAAALIAsgBIAAAABQLODgAAAA9ZAEMA
TwBNAE0ATABPAEMAAgAQAFkAQwBPAE0ATQBMAE8A
QwABAA4AUwBRAEwAUwBFAFIAVgAEACQAeQBjAG8A
bQBtAC0AZQB1AHIAbwBwAGUALgBsAG8AYwBhAGwA
AwA0AHMAcQBsAHMAZQByAHYALgB5AGMAbwBtAG0A
LQBlAHUAcgBvAHA
AZQAuAGwAbwBjAGEAbAAFACQAeQBjAG8AbQBtAC0
AZQB1AHIAbwBwAGUALgBsAG8AYwBhAGwAAAAAAA=
=\r\n
X-Powered-By: ASP.NET\r\n
Date: Mon, 06 Feb 2006 08:33:28 GMT\r\n
\r\n
SEC_E_OK - InitializeSecurityContext\n<!DOCTYPE HTML PUBLIC "-//W3C//DTD
HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd">\r\n
<HTML><HEAD><TITLE>You are not authorized to view this page</TITLE>\r\n
<META HTTP-EQUIV="Content-Type" Content="text/html; charset=Windows-1252">\r\n
<STYLE type="text/css">\r\n
BODY { font: 8pt/12pt verdana }\r\n
H1 { font: 13pt/15pt verdana }\r\n
H2 { font: 8pt/12pt verdana }\r\n
A:link { color: red }\r\n
A:visited { color: maroon }\r\n
</STYLE>\r\n
</HEAD><BODY><TABLE width=500 border=0 cellspacing=10><TR><TD>\r\n
\r\n
<h1>You are not authorized to view this page</h1>\r\n
You do not have permission to view this directory or page using the
credentials that you supplied.\r\n
<hr>\r\n
<p>Please try the following:</p>\r\n
<ul>\r\n
<li>Contact the Web site administrator if you believe you should be able to
view this directory or page.</li>\r\n
<li>Click the <a href="java script:location.reload()">Refresh</a> button to
try again with different credentials.</li>\r\n
</ul>\r\n
<h2>HTTP Error 401.1 - Unauthorized: Access is denied due to invalid
credentials.<br>Internet Information Services (IIS)</h2>\r\n
<hr>\r\n
<p>Technical Information (for support personnel)</p>\r\n
<ul>\r\n
<li>Go to <a href="http://go.microsoft.com/fwlink/?linkid=8180">Microsoft
Product Support Services</a> and perform a title search for the words
<b>HTTP</b> and <b>401</b>.</li>\r\n
<li>Open <b>IIS Help</b>, which is accessible in IIS Manager (inetmgr),\r\n
and search for topics titled <b>Authentication</b>, <b>Access Control</b>,
and <b>About Custom Error Messages</b>.</li>\r\n
</ul>\r\n
\r\n
</TD></TR></TABLE></BODY></HTML>\r\n
REQUEST: **************\nGET /company.aspx HTTP/1.1\r\n
Host: myprofile\r\n
Accept: */*\r\n
Connection: Keep-Alive\r\n
Authorization: NTLM
TlRMTVNTUAADAAAAGAAYAHgAAAAYABgAkAAAABAA
EABIAAAAEAAQAFgAAAAQABAAaAAAABAAEACoAAAA
FYKI4gUBKAoAAAAPeQBjAG8AbQBtAGwAbwBjAGIA
ZQB6AG8AZQBrAGUAcgBOAE8AVABFAEIATwBPAEsA
ixvcxySZn40AAAAAAAAAAAAAAAAAAAAA9wA958/ ELbS12Os7oMprio8xdVT0FX7Sdo5jDM2mslLr7mp
2a5p5yw==\r\n
\r\n
RESPONSE: **************\nHTTP/1.1 200 OK\r\n
Date: Mon, 06 Feb 2006 08:33:34 GMT\r\n
Server: Microsoft-IIS/6.0\r\n
X-Powered-By: ASP.NET\r\n
X-AspNet-Version: 2.0.50727\r\n
Transfer-Encoding: chunked\r\n
Cache-Control: private\r\n
Content-Type: text/html; charset=utf-8\r\n
\r\n
\r\n
\r\n
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">\r\n
\r\n
<html xmlns="http://www.w3.org/1999/xhtml" >\r\n
<head><title>\r\n
\tUntitled Page\r\n
</title></head>\r\n
<body>\r\n
<form name="aspnetForm" method="post" action="error.aspx"
id="aspnetForm">\r\n
<input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE"
value="/ wEPDwUIMjQ4NTIzOTEPZBYCZg9kFgICAw9kFgQCA
Q88KwAJAgAPFgQeDU5ldmVyRXhwYW5kZWRkHgtfI
URhdGFCb3VuZGdkCBQrAAIFAzA6MBQrAAIWDB4EV
GV4dAUKTXkgUHJvZmlsZR4FVmFsdWUFCk15IFByb
2ZpbGUeDFNlbGVjdEFjdGlvbgsqLlN5c3RlbS5XZ
WIuVUkuV2ViQ29udHJvbHMuVHJlZU5vZGVTZWxlY
3RBY3Rp
b24DHghEYXRhUGF0aAUkNmVlNGE5MWYtNmViYS00
MjM0LWE0ODMtNDQ4MjYwMDMyMTM2HglEYXRhQm91
bmRnHghFeHBhbmRlZGcUKwAEBQswOjAsMDoxLDA6
MhQrAAIWDB8CBQpNeSBDb21wYW55HwMFCk15IENv
bXBhbnkfBAsrBAMfBQUkOTQ2ZGRjZDctYjNkYS00
Y2RhLWI2Y2UtY2NhN2E0MjM1NGQwHwZnHwdnFCsA
AwUHMDowLDA6MRQ
rAAIWDh8CBQdDb21wYW55HwMFB0NvbXBhbnkeC05
hdmlnYXRlVXJsBQ0vQ29tcGFueS5hc3B4HwUFDS9
jb21wYW55LmFzcHgfBmceCFNlbGVjdGVkZx8HZ2Q
UKwACFgwfAgUIQ29udGFjdHMfAwUIQ29udGFjdHM
fCAUOL2NvbnRhY3RzLmFzcHgfBQUOL2NvbnRhY3R
zLmFzcHgfBmcfB2dkFCsAAhYMHwIFB015IEpvYnM
fAwUHTXkgSm9icx
8IBQwvTXlKb2JzLmFzcHgfBQUML215am9icy5hc3
B4HwZnHwdnZBQrAAIWDB8CBQtNeSBIb2xpZGF5cx
8DBQtNeSBIb2ZGF5cx8IBRAvTXlIb2xpZGF5cy5h
c3B4HwUFEC9teWhvbGlkYXlzLmFzcHgfBmcfB2dk
ZAIDD2QWAgIDDw8WAh8CBUFFeGNlcHRpb24gb2Yg
dHlwZSAnU3lzdGVtLldlYi5IdHRwVW5oYW5kbGVk
RXhjZXB0aW9uJyB
3YXMgdGhyb3duLmRkGAEFHl9fQ29udHJvbHNSZXF
1aXJlUG9zdEJhY2tLZXlfXxYBBQ9jdGwwMCRUcmV
lVmlldzFc7u3oexxc8Sy+pMi0UXZihscPhQ==" />\r\n
\r\n
<div>\r\n
<table width="100%">\r\n
<tr>\r\n
<td height="100%" valign="top">\r\n
<a href="#ctl00_TreeView1_SkipLink"><img alt="Skip Navigation
Links." src="/WebResource.axd?d=ImoHn0dlEoXdbkVdRjar1g2&t=632689698296718094"
width="0" height="0" border="0" /></a><div id="ctl00_TreeView1">\r\n
\t<table cellpadding="0" cellspacing="0">\r\n
\t\t<tr>\r\n
\t\t\t<td><a href=" Java script:__doPostBack('ctl00$TreeView1
','tMy
Profile')"><img
src="/WebResource.axd?d=j_8KBrck3- _NFSOScpYgX7hYJo8myU2vJ1M0JO9TRguS7zQ5mf
NcQgNmc6k6felC0&t=632689698296718094"
alt="Collapse My Profile" border="0" /></a></td><td nowrap="nowrap"><span
id="ctl00_TreeView1t0"><font face="Verdana" color="Black" size="1">My
Profile</font></span></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr>\r\n
\t</table><table cellpadding="0" cellspacing="0">\r\n
\t\t<tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><a
href=" Java script:__doPostBack('ctl00$TreeView1
','tMy Profile\\My
Company')"><img
src="/WebResource.axd?d=j_8KBrck3- _NFSOScpYgX7hYJo8myU2vJ1M0JO9TRguS7zQ5mf
NcQgNmc6k6felC0&t=632689698296718094"
alt="Collapse My Company" border="0" /></a></td><td nowrap="nowrap"><span
id="ctl00_TreeView1t1"><b><font face="Verdana" color="#5555DD" size="1">My
Company</font></b></span></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr>\r\n
\t</table><table cellpadding="0" cellspacing="0">\r\n
\t\t<tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><img
src="/WebResource.axd?d=j_8KBrck3-_NFSOScpYgXz- WkZdL_pCyS_ygFetsbA70xULPtzruIZY0V1EyWAE
y0&t=632689698296718094"
alt="" /></td><td nowrap="nowrap"><a href="/Company.aspx"
id="ctl00_TreeView1t2"><u><font face="Verdana" color="Black"
size="1">Company</font></u></a></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr>\r\n
\t</table><table cellpadding="0" cellspacing="0">\r\n
\t\t<tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><img
src="/WebResource.axd?d=j_8KBrck3-_NFSOScpYgXz- WkZdL_pCyS_ygFetsbA70xULPtzruIZY0V1EyWAE
y0&t=632689698296718094"
alt="" /></td><td nowrap="nowrap"><a href="/contacts.aspx"
id="ctl00_TreeView1t3"><font face="Verdana" color="Black"
size="1">Contacts</font></a></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr>\r\n
\t</table><table cellpadding="0" cellspacing="0">\r\n
\t\t<tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><img
src="/WebResource.axd?d=j_8KBrck3-_NFSOScpYgXz- WkZdL_pCyS_ygFetsbA70xULPtzruIZY0V1EyWAE
y0&t=632689698296718094"
alt="" /></td><td nowrap="nowrap"><a href="/MyJobs.aspx"
id="ctl00_TreeView1t4"><font face="Verdana" color="Black" size="1">My
Jobs</font></a></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr>\r\n
\t</table><table cellpadding="0" cellspacing="0">\r\n
\t\t<tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td><table width="10">\r\n
\t\t\t\t<tr>\r\n
\t\t\t\t\t<td></td>\r\n
\t\t\t\t</tr>\r\n
\t\t\t</table></td><td><img
src="/WebResource.axd?d=j_8KBrck3-_NFSOScpYgXz- WkZdL_pCyS_ygFetsbA70xULPtzruIZY0V1EyWAE
y0&t=632689698296718094"
alt="" /></td><td nowrap="nowrap"><a href="/MyHolidays.aspx"
id="ctl00_TreeView1t5"><font face="Verdana" color="Black" size="1">My
Holidays</font></a></td>\r\n
\t\t</tr><tr>\r\n
\t\t\t<td></td>\r\n
\t\t</tr>\r\n
\t</table>\r\n
</div><a id="ctl00_TreeView1_SkipLink"></a>\r\n
</td>\r\n
<td height="100%" style="padding-right: 10px; padding-left:
10px;\r\n
padding-bottom: 10px; padding-top: 10px" valign="top"
width="100%">\r\n
\r\n
<span id="ctl00_ContentPlaceHolder1_Label1">Dear supplier, your profile
is currently unavailable. We apologize for the inconvenience. Please try
again in one hour. Thank you.</span>\r\n
<br />\r\n
<br />\r\n
<br />\r\n
<span id="ctl00_ContentPlaceHolder1_lblErrorText">Exception of type
'System.Web.HttpUnhandledException' was thrown.</span><br />\r\n
<br />\r\n
<span id="ctl00_ContentPlaceHolder1_lblDetail"></span>\r\n
\r\n
</td>\r\n
<td>\r\n
</td>\r\n
</tr>\r\n
</table>\r\n
\r\n
\r\n
\r\n
</div>\r\n
\r\n
<input type="hidden" name="__EVENTVALIDATION" id="__EVENTVALIDATION"
value="/wEWAwK+/rPaAgK1k5qNBAKOpYWRDU9dqmKxZd5/GyhbhFgW8LhbXjE7" /></form>\r\n
</body>\r\n
</html>\r\n
finished.

""WenJun Zhang[msft]"" wrote:

> Hi Bart,
>
> Let's use webfetch to trace the rawdata of http request/response and
> determine if the problem is actually on server-side.
>
> HOW TO: Use Wfetch.exe to Troubleshoot HTTP Connections
> http://support.microsoft.com/defaul...kb;en-us;284285
>
> To use, please input:
>
> Host: (Your servername)
> Path: (The relative path of your page. e.g: /simple.htm)
> Auth: (in case the site is anonymous enabled, just use Anonymous, otherwise
> please specify proper user credential)
>
> Press Go! to issue to http request to the server and check what response is
> returned. I think the trace should slow us with the details. Please paste
> the whole log data here.
>
> I'll wait for your update. Thanks.
>
> Best regards,
>
> WenJun Zhang
> Microsoft Online Partner Support
>
> This posting is provided "AS IS" with no warranties, and confers no rights.
>
>
>
>

WenJun Zhang[msft]

2006-02-07, 7:50 am

Yes, the trace indicates server-side is working ok. The problem should be
on your IE client. You can restore IE Internet security setting to default
level to have a test, and also remove any existing proxy settings if they
are not required.

Best regards,

WenJun Zhang
Microsoft Online Partner Support

This posting is provided "AS IS" with no warranties, and confers no rights.



Bart

2006-02-17, 10:41 pm

Hi,
When I uncheck 'integrated security' I can just browse.
When I check 'integrated security' he isn't asking for credentials.
I tried also to reset to default settings, but no avail.

What else can I try?
Thanks

""WenJun Zhang[msft]"" wrote:

> Yes, the trace indicates server-side is working ok. The problem should be
> on your IE client. You can restore IE Internet security setting to default
> level to have a test, and also remove any existing proxy settings if they
> are not required.
>
> Best regards,
>
> WenJun Zhang
> Microsoft Online Partner Support
>
> This posting is provided "AS IS" with no warranties, and confers no rights.
>
>
>
>

WenJun Zhang[msft]

2006-02-17, 10:41 pm

Hi,

Do you mean the setting 'Enable Integrated Windows Authentication' in IE
Internet Options->Advanced?

When 'Enable Integrated Windows Authentication' is disabled, IE will use
NTLM to connect to IIS (with integrated auth). When the option is enabled,
Kerberos will be used. If Kerberos doesn't work in your domain, then the
authentication will fail.

Please let me know if this is just the case. Thanks.

Best regards,

WenJun Zhang
Microsoft Online Partner Support

When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.

========================================
=============

Business-Critical Phone Support (BCPS) provides you with technical phone
support at no charge during critical LAN outages or "business down"
situations. This benefit is available 24 hours a day, 7 days a week to all
Microsoft technology partners in the United States and Canada.

This and other support options are available here:

BCPS:
https://partner.microsoft.com/US/te...erview/40010469
Others: https://partner.microsoft.com/US/te...upportoverview/

If you are outside the United States, please visit our International
Support page: http://support.microsoft.com/common/international.aspx

========================================
==============

PLEASE NOTE the newsgroup SECURE CODE and PASSWORD will be updated at 9:00
AM PST, February 14, 2006. Please complete a re-registration process by
entering the secure code mmpng2006 when prompted. Once you have entered the
secure code mmpng2006, you will be able to update your profile and access
the partner newsgroups.

========================================
==============

This posting is provided "AS IS" with no warranties, and confers no rights.



Bart

2006-02-17, 10:41 pm

No, I mean in IIS6.0

""WenJun Zhang[msft]"" wrote:

> Hi,
>
> Do you mean the setting 'Enable Integrated Windows Authentication' in IE
> Internet Options->Advanced?
>
> When 'Enable Integrated Windows Authentication' is disabled, IE will use
> NTLM to connect to IIS (with integrated auth). When the option is enabled,
> Kerberos will be used. If Kerberos doesn't work in your domain, then the
> authentication will fail.
>
> Please let me know if this is just the case. Thanks.
>
> Best regards,
>
> WenJun Zhang
> Microsoft Online Partner Support
>
> When responding to posts, please "Reply to Group" via your newsreader so
> that others may learn and benefit from your issue.
>
> ========================================
=============
>
> Business-Critical Phone Support (BCPS) provides you with technical phone
> support at no charge during critical LAN outages or "business down"
> situations. This benefit is available 24 hours a day, 7 days a week to all
> Microsoft technology partners in the United States and Canada.
>
> This and other support options are available here:
>
> BCPS:
> https://partner.microsoft.com/US/te...erview/40010469
> Others: https://partner.microsoft.com/US/te...upportoverview/
>
> If you are outside the United States, please visit our International
> Support page: http://support.microsoft.com/common/international.aspx
>
> ========================================
==============
>
> PLEASE NOTE the newsgroup SECURE CODE and PASSWORD will be updated at 9:00
> AM PST, February 14, 2006. Please complete a re-registration process by
> entering the secure code mmpng2006 when prompted. Once you have entered the
> secure code mmpng2006, you will be able to update your profile and access
> the partner newsgroups.
>
> ========================================
==============
>
> This posting is provided "AS IS" with no warranties, and confers no rights.
>
>
>
>

WenJun Zhang[msft]

2006-02-20, 2:48 am

Let's use webfetch to trace the rawdata of http request/response and
determine if the problem is actually on server-side. Please make sure
integrated windows authentication is selected in IIS.

HOW TO: Use Wfetch.exe to Troubleshoot HTTP Connections
http://support.microsoft.com/defaul...kb;en-us;284285

To use, please input:

Host: (Your servername)
Path: (The relative path of your page. e.g: /simple.htm)
Auth: (Select NTLM and specify proper user credential)

Press Go! to issue a http request to the server and check what response is
returned. I think the trace should slow us with the details. Please paste
the whole log data here.

I'll wait for your update. Thanks.

Best regards,

WenJun Zhang
Microsoft Online Partner Support

When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.

========================================
=============

Business-Critical Phone Support (BCPS) provides you with technical phone
support at no charge during critical LAN outages or "business down"
situations. This benefit is available 24 hours a day, 7 days a week to all
Microsoft technology partners in the United States and Canada.

This and other support options are available here:

BCPS:
https://partner.microsoft.com/US/te...erview/40010469
Others: https://partner.microsoft.com/US/te...upportoverview/

If you are outside the United States, please visit our International
Support page: http://support.microsoft.com/common/international.aspx

========================================
==============

PLEASE NOTE the newsgroup SECURE CODE and PASSWORD will be updated at 9:00
AM PST, February 14, 2006. Please complete a re-registration process by
entering the secure code mmpng2006 when prompted. Once you have entered the
secure code mmpng2006, you will be able to update your profile and access
the partner newsgroups.

========================================
==============

This posting is provided "AS IS" with no warranties, and confers no rights.



Bart

2006-02-20, 7:48 am

We already did that, see my first reply on this thread.
What else can I try?
Thanks a lot
Bart

""WenJun Zhang[msft]"" wrote:

> Let's use webfetch to trace the rawdata of http request/response and
> determine if the problem is actually on server-side. Please make sure
> integrated windows authentication is selected in IIS.
>
> HOW TO: Use Wfetch.exe to Troubleshoot HTTP Connections
> http://support.microsoft.com/defaul...kb;en-us;284285
>
> To use, please input:
>
> Host: (Your servername)
> Path: (The relative path of your page. e.g: /simple.htm)
> Auth: (Select NTLM and specify proper user credential)
>
> Press Go! to issue a http request to the server and check what response is
> returned. I think the trace should slow us with the details. Please paste
> the whole log data here.
>
> I'll wait for your update. Thanks.
>
> Best regards,
>
> WenJun Zhang
> Microsoft Online Partner Support
>
> When responding to posts, please "Reply to Group" via your newsreader so
> that others may learn and benefit from your issue.
>
> ========================================
=============
>
> Business-Critical Phone Support (BCPS) provides you with technical phone
> support at no charge during critical LAN outages or "business down"
> situations. This benefit is available 24 hours a day, 7 days a week to all
> Microsoft technology partners in the United States and Canada.
>
> This and other support options are available here:
>
> BCPS:
> https://partner.microsoft.com/US/te...erview/40010469
> Others: https://partner.microsoft.com/US/te...upportoverview/
>
> If you are outside the United States, please visit our International
> Support page: http://support.microsoft.com/common/international.aspx
>
> ========================================
==============
>
> PLEASE NOTE the newsgroup SECURE CODE and PASSWORD will be updated at 9:00
> AM PST, February 14, 2006. Please complete a re-registration process by
> entering the secure code mmpng2006 when prompted. Once you have entered the
> secure code mmpng2006, you will be able to update your profile and access
> the partner newsgroups.
>
> ========================================
==============
>
> This posting is provided "AS IS" with no warranties, and confers no rights.
>
>
>
>

WenJun Zhang[msft]

2006-02-21, 2:49 am

Bart,

Have you also tried switching the option 'Enable Integrated Windows
Authentication' on/off in IE Internet Options? What's the result?

For non-domain users connecting to an integrated auth enabled site, IE
should prompt for username/password. So I think this may be a odd client
side issue.

Have a nice day.

Best regards,

WenJun Zhang
Microsoft Online Partner Support

This posting is provided "AS IS" with no warranties, and confers no rights.



Sponsored Links






Free braindumps | Software forum | Database administration forum

Copyright 2003 - 2008 webservertalk.com