laptop and a wrench

Bug

When a secured ArcGIS Online web map, application or dashboard is embedded in a website with a different domain, and the user authenticates with ArcGIS Online credentials to access the website, Chrome 80 SameSite cookie updates cause the embedded application to prompt for credentials instead of passing the cookie cross-domain to authenticate the signed-in user.

Zuletzt veröffentlicht: June 23, 2020 ArcGIS Online
Bug-ID-Nummer BUG-000129800
EingereichtApril 1, 2020
Zuletzt geändertJune 5, 2024
Gilt fürArcGIS Online
Gefunden in Version8.1
BetriebssystemWindows OS
Betriebssystemversion10.0
StatusDuplicate

Zusätzliche Informationen

This is a duplicate of BUG-000131669. This issue is not reproducible if the dashboard, map and layers are all shared with the public. If they are only shared with the organization, a login prompt is expected.

Workaround

This workaround may not be acceptable to end users as it requires changing Google Chrome to outdated security settings, but it works once Google Chrome updates to enforce the SameSite cookie changes. 

  1. Go to chrome://Flags.
  2. Change the 'SameSite by default cookies' setting to 'Disabled'.
  3. Change the 'Cookies without SameSite must be secure' setting to 'Disabled'.

Schritte zur Reproduzierung

Bug-ID: BUG-000129800

Software:

  • ArcGIS Online

Benachrichtigung erhalten, wenn sich der Status eines Bugs ändert

Esri Support App herunterladen

Weitere Informationen zu diesem Thema erkunden

Unterstützung durch ArcGIS-Experten anfordern

An den technischen Support wenden

Esri Support App herunterladen

Zu Download-Optionen wechseln