laptop and a wrench

Bogue

When a secured ArcGIS Online web map, application or dashboard is embedded in a website with a different domain, and the user authenticates with ArcGIS Online credentials to access the website, Chrome 80 SameSite cookie updates cause the embedded application to prompt for credentials instead of passing the cookie cross-domain to authenticate the signed-in user.

Dernière publication: June 23, 2020 ArcGIS Online
Numéro d’ID de bogue BUG-000129800
EnvoiApril 1, 2020
Dernière modificationJune 5, 2024
S’applique àArcGIS Online
Version trouvée8.1
Système d’exploitationWindows OS
Version du système d’exploitation10.0
StatutDuplicate

Informations supplémentaires

This is a duplicate of BUG-000131669. This issue is not reproducible if the dashboard, map and layers are all shared with the public. If they are only shared with the organization, a login prompt is expected.

Solution de contournement

This workaround may not be acceptable to end users as it requires changing Google Chrome to outdated security settings, but it works once Google Chrome updates to enforce the SameSite cookie changes. 

  1. Go to chrome://Flags.
  2. Change the 'SameSite by default cookies' setting to 'Disabled'.
  3. Change the 'Cookies without SameSite must be secure' setting to 'Disabled'.

Étapes pour reproduire

ID de bogue: BUG-000129800

Logiciel:

  • ArcGIS Online

Recevoir une notification lorsque le statut d’un bogue change

Télécharger l’application Esri Support

En savoir plus sur ce sujet

Obtenir de l’aide auprès des experts ArcGIS

Contacter le support technique

Télécharger l’application Esri Support

Accéder aux options de téléchargement