Skip to main content
edited tags
Link
Mark Cassidy
  • 25.5k
  • 8
  • 60
  • 117
deleted 2715 characters in body
Source Link
Jey
  • 373
  • 2
  • 19

I am trying with Azure AD integration in my Sitecore 10.2 XM. I am not able to find the official documents in the sitecore documentationI am not able to find the official documents in the sitecore documentation. But i have followed the following blogs for this and it looks straight forward. But i am facing some difficulties in my case.

I am getting the following logline item from the IDS site. 2023-06-05T18:21:31.9871090-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 GET http://sc-102-xm-ids/Account/ExternalLogin?provider=IdS4-AzureAd&returnUrl=%2Fconnect%2Fauthorize%2Fcallback%3Fclient_id%3DSitecore%26response_type%3Dcode%2520id_token%2520token%26scope%3Dopenid%2520sitecore.profile%26state%3DOpenIdConnect.AuthenticationProperties%253D0wa33TGwIAzxyleYy1e-yF-gv9mixYcrzzY5iUxWoOQZRVuu7My6YnPypmj-jRsz9TP1QikA8qe9ncSm8gQ5H65HMnvl3n9HNPzum7xh2cSnpGI42B73Sqo-KJbO95-g8hU1k_CAwNRe5ljcxaxYUuj4NOnNFOGiYnJDCs8SYwdOOvve8gLv_ijql67lOywlXSHvzJw2QmsffZLq6m55OA%26response_mode%3Dform_post%26nonce%3D638216003607818768.MThkYTgzOTUtYjM3MC00OTQ4LTkyMGEtOWZiNGI1Y2RkMDZiNGFlM2IxOGYtODNjOS00ODU3LWFkOTgtNTQ3NTBjYjI2MGQ2%26redirect_uri%3Dhttps%253A%252F%252Fsc-102-xm-cm%252Fidentity%252Fsignin%26sc_account_prefix%3Dsitecore%255C%26x-client-SKU%3DID_NET461%26x-client-ver%3D5.3.0.0
2023-06-05T18:21:31.9901593-04:00 [INF] (Sitecore Identity/My Machine Name) Executing endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:31.9905147-04:00 [INF] (Sitecore Identity/My Machine Name) Route matched with "{action = "ExternalLogin", controller = "Account"}". Executing controller action with signature "System.Threading.Tasks.Task`1[Microsoft.AspNetCore.Mvc.IActionResult] ExternalLogin(Systemlog file.String what i have done is, System.String)" on controller "Sitecore.Plugin.IdentityServer.Controllers.AccountController" ("Sitecore.Plugin.IdentityServer"). 2023-06-05T18:21:31.9952164-04:00 [INF] (Sitecore Identity/My Machine Name) Executing ChallengeResult with authentication schemes (["IdS4-AzureAd"]). 2023-06-05T18:21:32.0056408-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "IdS4-AzureAd" was challenged. 2023-06-05T18:21:32.0059854-04:00 [INF] (Sitecore Identity/My Machine Name) Executed action "Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"Sitecore is in 15.3615ms 2023-06-05T18:21:32.0061919-04:00 [INF] (Sitecore Identity/My Machine Name) Executed endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:32my local.0065532-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished AD details are my organization details and created the necessary app, group in 19.4826ms 302 2023-06-05T18:21:32.6373703-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 POST http://sc-102-xm-ids/signin-oidc application/x-www-form-urlencoded 10002 2023-06-05T18:21:32.6402262-04:00 [INF] (Sitecore Identity/My Machine Name) CORS policy execution failed. 2023-06-05T18:21:32.6404266-04:00 [INF] (Sitecore Identity/My Machine Name) Request origin "https://login.microsoftonlinemy organization AD.com" does not have permission Does this related to access the resource. 2023-06-05T18:21:32.6411257-04:00 [INF] (Sitecore Identity/My Machine Name) No CORS policy found for the specified request. 2023-06-05T18:21:32.6701068-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "idsrv.external" signed in. 2023-06-05T18:21:32.6710078-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 33.6107ms 302permission issue between my local and organization AD?

2023-06-05T18:33:52.2891267-04:00 [INF] (Sitecore Identity/My Machine Name Here) Request origin "https://login.microsoftonline.com" does not have permission to access the resource. 

I am trying with Azure AD integration in my Sitecore 10.2 XM. I am not able to find the official documents in the sitecore documentation. But i have followed the following blogs for this and it looks straight forward.

I am getting the following log from IDS site. 2023-06-05T18:21:31.9871090-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 GET http://sc-102-xm-ids/Account/ExternalLogin?provider=IdS4-AzureAd&returnUrl=%2Fconnect%2Fauthorize%2Fcallback%3Fclient_id%3DSitecore%26response_type%3Dcode%2520id_token%2520token%26scope%3Dopenid%2520sitecore.profile%26state%3DOpenIdConnect.AuthenticationProperties%253D0wa33TGwIAzxyleYy1e-yF-gv9mixYcrzzY5iUxWoOQZRVuu7My6YnPypmj-jRsz9TP1QikA8qe9ncSm8gQ5H65HMnvl3n9HNPzum7xh2cSnpGI42B73Sqo-KJbO95-g8hU1k_CAwNRe5ljcxaxYUuj4NOnNFOGiYnJDCs8SYwdOOvve8gLv_ijql67lOywlXSHvzJw2QmsffZLq6m55OA%26response_mode%3Dform_post%26nonce%3D638216003607818768.MThkYTgzOTUtYjM3MC00OTQ4LTkyMGEtOWZiNGI1Y2RkMDZiNGFlM2IxOGYtODNjOS00ODU3LWFkOTgtNTQ3NTBjYjI2MGQ2%26redirect_uri%3Dhttps%253A%252F%252Fsc-102-xm-cm%252Fidentity%252Fsignin%26sc_account_prefix%3Dsitecore%255C%26x-client-SKU%3DID_NET461%26x-client-ver%3D5.3.0.0
2023-06-05T18:21:31.9901593-04:00 [INF] (Sitecore Identity/My Machine Name) Executing endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:31.9905147-04:00 [INF] (Sitecore Identity/My Machine Name) Route matched with "{action = "ExternalLogin", controller = "Account"}". Executing controller action with signature "System.Threading.Tasks.Task`1[Microsoft.AspNetCore.Mvc.IActionResult] ExternalLogin(System.String, System.String)" on controller "Sitecore.Plugin.IdentityServer.Controllers.AccountController" ("Sitecore.Plugin.IdentityServer"). 2023-06-05T18:21:31.9952164-04:00 [INF] (Sitecore Identity/My Machine Name) Executing ChallengeResult with authentication schemes (["IdS4-AzureAd"]). 2023-06-05T18:21:32.0056408-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "IdS4-AzureAd" was challenged. 2023-06-05T18:21:32.0059854-04:00 [INF] (Sitecore Identity/My Machine Name) Executed action "Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)" in 15.3615ms 2023-06-05T18:21:32.0061919-04:00 [INF] (Sitecore Identity/My Machine Name) Executed endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:32.0065532-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 19.4826ms 302 2023-06-05T18:21:32.6373703-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 POST http://sc-102-xm-ids/signin-oidc application/x-www-form-urlencoded 10002 2023-06-05T18:21:32.6402262-04:00 [INF] (Sitecore Identity/My Machine Name) CORS policy execution failed. 2023-06-05T18:21:32.6404266-04:00 [INF] (Sitecore Identity/My Machine Name) Request origin "https://login.microsoftonline.com" does not have permission to access the resource. 2023-06-05T18:21:32.6411257-04:00 [INF] (Sitecore Identity/My Machine Name) No CORS policy found for the specified request. 2023-06-05T18:21:32.6701068-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "idsrv.external" signed in. 2023-06-05T18:21:32.6710078-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 33.6107ms 302

I am trying with Azure AD integration in my Sitecore 10.2 XM. I am not able to find the official documents in the sitecore documentation. But i have followed the following blogs for this and it looks straight forward. But i am facing some difficulties in my case.

I am getting the following line item from the IDS log file. what i have done is, Sitecore is in my local. AD details are my organization details and created the necessary app, group in my organization AD. Does this related to the permission issue between my local and organization AD?

2023-06-05T18:33:52.2891267-04:00 [INF] (Sitecore Identity/My Machine Name Here) Request origin "https://login.microsoftonline.com" does not have permission to access the resource. 
added 3241 characters in body
Source Link
Jey
  • 373
  • 2
  • 19

I am getting the following log from IDS site. 2023-06-05T18:21:31.9871090-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 GET http://sc-102-xm-ids/Account/ExternalLogin?provider=IdS4-AzureAd&returnUrl=%2Fconnect%2Fauthorize%2Fcallback%3Fclient_id%3DSitecore%26response_type%3Dcode%2520id_token%2520token%26scope%3Dopenid%2520sitecore.profile%26state%3DOpenIdConnect.AuthenticationProperties%253D0wa33TGwIAzxyleYy1e-yF-gv9mixYcrzzY5iUxWoOQZRVuu7My6YnPypmj-jRsz9TP1QikA8qe9ncSm8gQ5H65HMnvl3n9HNPzum7xh2cSnpGI42B73Sqo-KJbO95-g8hU1k_CAwNRe5ljcxaxYUuj4NOnNFOGiYnJDCs8SYwdOOvve8gLv_ijql67lOywlXSHvzJw2QmsffZLq6m55OA%26response_mode%3Dform_post%26nonce%3D638216003607818768.MThkYTgzOTUtYjM3MC00OTQ4LTkyMGEtOWZiNGI1Y2RkMDZiNGFlM2IxOGYtODNjOS00ODU3LWFkOTgtNTQ3NTBjYjI2MGQ2%26redirect_uri%3Dhttps%253A%252F%252Fsc-102-xm-cm%252Fidentity%252Fsignin%26sc_account_prefix%3Dsitecore%255C%26x-client-SKU%3DID_NET461%26x-client-ver%3D5.3.0.0
2023-06-05T18:21:31.9901593-04:00 [INF] (Sitecore Identity/My Machine Name) Executing endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:31.9905147-04:00 [INF] (Sitecore Identity/My Machine Name) Route matched with "{action = "ExternalLogin", controller = "Account"}". Executing controller action with signature "System.Threading.Tasks.Task`1[Microsoft.AspNetCore.Mvc.IActionResult] ExternalLogin(System.String, System.String)" on controller "Sitecore.Plugin.IdentityServer.Controllers.AccountController" ("Sitecore.Plugin.IdentityServer"). 2023-06-05T18:21:31.9952164-04:00 [INF] (Sitecore Identity/My Machine Name) Executing ChallengeResult with authentication schemes (["IdS4-AzureAd"]). 2023-06-05T18:21:32.0056408-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "IdS4-AzureAd" was challenged. 2023-06-05T18:21:32.0059854-04:00 [INF] (Sitecore Identity/My Machine Name) Executed action "Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)" in 15.3615ms 2023-06-05T18:21:32.0061919-04:00 [INF] (Sitecore Identity/My Machine Name) Executed endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:32.0065532-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 19.4826ms 302 2023-06-05T18:21:32.6373703-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 POST http://sc-102-xm-ids/signin-oidc application/x-www-form-urlencoded 10002 2023-06-05T18:21:32.6402262-04:00 [INF] (Sitecore Identity/My Machine Name) CORS policy execution failed. 2023-06-05T18:21:32.6404266-04:00 [INF] (Sitecore Identity/My Machine Name) Request origin "https://login.microsoftonline.com" does not have permission to access the resource. 2023-06-05T18:21:32.6411257-04:00 [INF] (Sitecore Identity/My Machine Name) No CORS policy found for the specified request. 2023-06-05T18:21:32.6701068-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "idsrv.external" signed in. 2023-06-05T18:21:32.6710078-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 33.6107ms 302

I am getting the following log from IDS site. 2023-06-05T18:21:31.9871090-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 GET http://sc-102-xm-ids/Account/ExternalLogin?provider=IdS4-AzureAd&returnUrl=%2Fconnect%2Fauthorize%2Fcallback%3Fclient_id%3DSitecore%26response_type%3Dcode%2520id_token%2520token%26scope%3Dopenid%2520sitecore.profile%26state%3DOpenIdConnect.AuthenticationProperties%253D0wa33TGwIAzxyleYy1e-yF-gv9mixYcrzzY5iUxWoOQZRVuu7My6YnPypmj-jRsz9TP1QikA8qe9ncSm8gQ5H65HMnvl3n9HNPzum7xh2cSnpGI42B73Sqo-KJbO95-g8hU1k_CAwNRe5ljcxaxYUuj4NOnNFOGiYnJDCs8SYwdOOvve8gLv_ijql67lOywlXSHvzJw2QmsffZLq6m55OA%26response_mode%3Dform_post%26nonce%3D638216003607818768.MThkYTgzOTUtYjM3MC00OTQ4LTkyMGEtOWZiNGI1Y2RkMDZiNGFlM2IxOGYtODNjOS00ODU3LWFkOTgtNTQ3NTBjYjI2MGQ2%26redirect_uri%3Dhttps%253A%252F%252Fsc-102-xm-cm%252Fidentity%252Fsignin%26sc_account_prefix%3Dsitecore%255C%26x-client-SKU%3DID_NET461%26x-client-ver%3D5.3.0.0
2023-06-05T18:21:31.9901593-04:00 [INF] (Sitecore Identity/My Machine Name) Executing endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:31.9905147-04:00 [INF] (Sitecore Identity/My Machine Name) Route matched with "{action = "ExternalLogin", controller = "Account"}". Executing controller action with signature "System.Threading.Tasks.Task`1[Microsoft.AspNetCore.Mvc.IActionResult] ExternalLogin(System.String, System.String)" on controller "Sitecore.Plugin.IdentityServer.Controllers.AccountController" ("Sitecore.Plugin.IdentityServer"). 2023-06-05T18:21:31.9952164-04:00 [INF] (Sitecore Identity/My Machine Name) Executing ChallengeResult with authentication schemes (["IdS4-AzureAd"]). 2023-06-05T18:21:32.0056408-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "IdS4-AzureAd" was challenged. 2023-06-05T18:21:32.0059854-04:00 [INF] (Sitecore Identity/My Machine Name) Executed action "Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)" in 15.3615ms 2023-06-05T18:21:32.0061919-04:00 [INF] (Sitecore Identity/My Machine Name) Executed endpoint '"Sitecore.Plugin.IdentityServer.Controllers.AccountController.ExternalLogin (Sitecore.Plugin.IdentityServer)"' 2023-06-05T18:21:32.0065532-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 19.4826ms 302 2023-06-05T18:21:32.6373703-04:00 [INF] (Sitecore Identity/My Machine Name) Request starting HTTP/1.1 POST http://sc-102-xm-ids/signin-oidc application/x-www-form-urlencoded 10002 2023-06-05T18:21:32.6402262-04:00 [INF] (Sitecore Identity/My Machine Name) CORS policy execution failed. 2023-06-05T18:21:32.6404266-04:00 [INF] (Sitecore Identity/My Machine Name) Request origin "https://login.microsoftonline.com" does not have permission to access the resource. 2023-06-05T18:21:32.6411257-04:00 [INF] (Sitecore Identity/My Machine Name) No CORS policy found for the specified request. 2023-06-05T18:21:32.6701068-04:00 [INF] (Sitecore Identity/My Machine Name) AuthenticationScheme: "idsrv.external" signed in. 2023-06-05T18:21:32.6710078-04:00 [INF] (Sitecore Identity/My Machine Name) Request finished in 33.6107ms 302

Source Link
Jey
  • 373
  • 2
  • 19
Loading