inovex/scrumlr.io

Sign In with Microsoft is not working

Closed this issue · 2 comments

The problem

After sign in with Microsoft an white Page with no content occurs.

Browser

Firefox, Chrome

Steps to reproduce the behavior

  1. Open https://scrumlr.io/login
  2. Click The Microsoft Button
  3. Eventually fill out form --> Ok

Screenshots

image
image

Additional context

Firefox Console output:

Navigated to https://scrumlr.io/api/login/microsoft?state=https%3A%2F%2Fscrumlr.io%2Fboard%2F5be3f632-eeb4-4bd4-a4dd-c4b9ffb2dee5
Storage access automatically granted for First-Party isolation “https://scrumlr.io” on “https://login.microsoftonline.com”. authorize
Cookie “CkTst” does not have a proper “SameSite” attribute value. Soon, cookies without the “SameSite” attribute or with an invalid value will be treated as “Lax”. This means that the cookie will no longer be sent in third-party contexts. If your application depends on this cookie being available in such contexts, please add the “SameSite=None“ attribute to it. To know more about the “SameSite“ attribute, read https://developer.mozilla.org/docs/Web/HTTP/Headers/Set-Cookie/SameSite inject.js:3612:30
BSSO Telemetry: {"result":"Error","error":"bssoNotSupported","type":"TBAuthTelemetry","data":{"BSSO.info":"not-supported"},"traces":["BrowserSSO Initialized","window.navigator.msLaunchUri is not available for _pullBrowserSsoCookie"]} ConvergedLogin_PCore_ICLzoUsGpmKj428t2HizvA2.js:13:106899
Source map error: request failed with status 404
Resource URL: https://aadcdn.msftauth.net/shared/1.0/content/js/oneDs_f2e0f4a029670f10d892.js
Source Map URL: oneDs_f2e0f4a029670f10d892.js.map
Cookie “uaid” will soon be rejected because it is foreign and does not have the “Partitioned“ attribute. Me.htm
Cookie “MSPRequ” will soon be rejected because it is foreign and does not have the “Partitioned“ attribute. Me.htm
This page is in Quirks Mode. Page layout may be impacted. For Standards Mode use “<!DOCTYPE html>”. Me.htm
Partitioned cookie or storage access was provided to “https://login.live.com/Me.htm?v=3” because it is loaded in the third-party context and dynamic state partitioning is enabled.
Navigated to https://login.microsoftonline.com/common/reprocess?ctx=rQQIARAAlZExbNNAAEVtnIa2Ahp1YmTIRLk4ts-xHZQBxVVSkjQxVZO0S7g7nxMnsc-x45ZESICEECMSQwWIBcHSCSGGqhOsnToiNtYiITbKUAmqqhsLb3j649f_1wU5k82nFZ0qOkJZoNo2ARAiDWDJpkCTdDkn2USiKgkX51PfPj54df9zYO5Uvudv3k1s7fJibzwOorwoRiSMvWGYcZmIAlccsq7ri55LQhYxZywSNBxiRAZ7PH_I818vLNRvxeOefCoWulP6Utjht3Akt6dNoxEPzM5qp1qpDfphJy5uWjAYqvVuV5PUllkbmaasjFyzvxwXteKkV26Var1RXJamWI8sX6uvLzPi-s5kirx6wyoUOp1_lMQMhbaoYqo4OUUGlGIIILYhQNC2AYHYcBws25Squ0I6e4YCTn0mcp7O-SAkCfM85u8LaUW1VYqRAgxCdAA1TQMoSw2gGNghElRloukHwtx6RMPMHYrsLwJ_mOCPEpeyQn52dj7FXeWucccJ_s3M39F_adV3q4uw-Pjh698n7RR3MCMaUVYvtVs5w8dLPTRuykuyRsLcwCy5tyG0WJki1ty-xyxqFYy89CzJ_0zyTy9y-3P_-9eny9zxlUcv9k6eP3n7o3y0cKOxGXStGqyX-itrVVjs1qsknMTMK3nlFacSbNjbG3ENus01v1Z4n-L-AA2&sessionid=35d5eba3-9cc8-4777-a0e9-39bfc1452c78
GET
https://scrumlr.io/api/login/microsoft/callback?code=0.AYEAyRSNSlnn4UGducLTkvScr6CK4zjcXadEsd5xgmHcHlyBAKU.AgABBAIAAAApTwJmzXqdR4BN2miheQMYAgDs_wUA9P9J3sGTbl92nZNahaW0v2SGLUwol43k6R9qZ0vUPjO-0fh00kr9rxkQl-mBA_WMrPC5kvfxGo0lcI11p2iRK6SbDhoj8Czj6VAmHmUhZkKoDj8v2WClZqj8x8e1Plk4c-NM6teQTIn6WG9CLR0Lu7IAQDaicz9dq3uvpXLqdIjm6GceVB_6JoaiBJQ_rCkkkRZAFsMOOE_M52NZPrOhLSlY0Y381Mbbf2lyvvFaLdoBjkVoSJWgS7GAgv5Ij0BE9Vmbp7Pg-nxaoTTgEVGFu0FJQoLCQUToezQPa2HX21g45UDda6rmvvfLlcC2d-gTCQuOx3HcT9BCxHWSAvXwePI_WxdiKFO0Ifbsq92wdChIPAXZBDEeKyhkwN9pQIkKMd3dRacN-Qc-v3wY44GYu7k7SZB8-tiwiD3DmaPFmnWaOSG2EoJK4w6pXeQ4z_O8TLovLxNywaStVku72u1wuYoIXz3fYfm9uV2TRu4Qj48SC36t6R887v0q2tWBI3iFzwb9d4p5c3Ju5SUH5DxSoTr2GJA2i2TXwln_ZVEIsAKtmNt_3GuRGzl1f-HHDcr_dIYkR3kHV75SeszmxtQtBBk6OkmiNbY9w3n64AcdaYa13ke_wYTyDo7qhWHocMabWylzHm5q_h9ZX6tG4uXYLFCdWDwJ7gURumODQt45Ee15ftXE_boIsMdZukhq1pdcD_dglY34QhpMlr1ibAVIkuloxw&state=vbs2XzV9PukD_N_LKMkjr_uCZQ4pl5Ogg715WDMqDD23qiDjEuC7CyhHWGMhquH1zb8sQn7OUEocinfyzamOPQ==__https://scrumlr.io/board/5be3f632-eeb4-4bd4-a4dd-c4b9ffb2dee5&session_state=35d5eba3-9cc8-4777-a0e9-39bfc1452c78#
[HTTP/2 500  255ms]

Storage access automatically granted for First-Party isolation “https://login.microsoftonline.com” on “https://scrumlr.io”. callback
Cookie “_gothic_session” does not have a proper “SameSite” attribute value. Soon, cookies without the “SameSite” attribute or with an invalid value will be treated as “Lax”. This means that the cookie will no longer be sent in third-party contexts. If your application depends on this cookie being available in such contexts, please add the “SameSite=None“ attribute to it. To know more about the “SameSite“ attribute, read https://developer.mozilla.org/docs/Web/HTTP/Headers/Set-Cookie/SameSite callback
GET
https://scrumlr.io/favicon.ico
[HTTP/2 404  15ms]

Our client cert for Microsoft Entra ID expired. Sorry about that we are on it.

Updated Client Secret. Microsoft Login is functional again.