Can't login to http://email.uol.com.br or other websites that send a POST to a different server than the login page is on.

(Last modified: 11Jul2003)

This document (10081574) is provided subject to the disclaimer at the end of this document.

fact

Novell Volera Excelerator 2.2

symptom

Can't login to http://email.uol.com.br or other websites that send a POST to a different server than the login page is on.

Duplication steps:

1 - configure forward proxy w/LDAP authentication, require authentication on ALL methods (i.e. all boxes checked under "require authentication options"
2 - configure Access Control List w/2 rules: block all, allow all to specified LDAP user
3 - clear browser cache, restart browser
4 - purgecache, purgednscache, reboot appliance (clearing any Identity Agent connections)
5 - browse to http://email.uol.com.br, login via LDAP to appliance, continue to http://email.uol.com.br
6 - login with your username / password

7 - note "403 Forbidden. Invalid configuration."

The actual error can vary based on what version of Excelerator is running.

2.2.76: standard IE error page -- trying to access http://10.1.1.1/ICSIBroker/?%22http://watt1.uol.com.br/cgi-bin/webmail.exe%22-X

2.2.64.204: 403 Forbidden, Invalid configuration. Please try your request again.

URL: http://10.1.1.1/ICSIBroker/?%22http://watt1.uol.com.br/cgi-bin/webmail.exe%22-X

fix

Fixed in 2.2 SP3.

document

Document Title: Can't login to http://email.uol.com.br or other websites that send a POST to a different server than the login page is on.
Document ID: 10081574
Solution ID: NOVL88198
Creation Date: 27Mar2003
Modified Date: 11Jul2003
Novell Product Class:Volera Excelerator

disclaimer

The Origin of this information may be internal or external to Novell. Novell makes all reasonable efforts to verify this information. However, the information provided in this document is for your information only. Novell makes no explicit or implied claims to the validity of this information.
Any trademarks referenced in this document are the property of their respective owners. Consult your product manuals for complete trademark information.