Re: iframe / issues - unknown zone

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Well i figured this out myself and thought I'd post just in case someone
else needs this.

My propblem was caused my IE thinking I had 3rd party cookies which in fact
I did because of the IFRAME behavior. To get around this you can add a
header in P3P header in IIS (if you can) or in my case I added the header in
the page_load event of my application where I was using the cookies.

Of course you need to generate the P3P values but that's the easy part.

- Big D



"Big D" <dtclkc@xxxxxxxxxxxxx> wrote in message
news:eAY2LXXtFHA.1028@xxxxxxxxxxxxxxxxxxxxxxx
> Background: I have an .Net aspx application that I allow clients to brand
> and include in the web site. The idea is that visitors to their web site
> never know about me. The application runs on my server and they want to
> place my application on their web site in an iframe.
>
> Outside of the frame all is good. Inside of the frame the application
> won't run (it will load, etc). It seems like the session or cookies can't
> be set. I can circumvent the problem by adding my url to Trusted Sites and
> it's all good. When I do run the app via the iframe the privacy settings
> show Mixed Zone. This happen only with IE and not FireFox. Everything is
> current and it happens on multiple boxes. I've done the IE setting route.
> This needs to work for casual visitors to a web site.
>
> I know there is a way to bypass this security that IE has laid upon me but
> I can't figure it out.
>
> Any help will never be forgotten.
>
> - Ted
>


.



Relevant Pages

  • Re: How do we get there from here?
    ... I can't tell you how often I try to do something on a web site and finally ... figure out I have cookies turned off...then have to open up my browser to ... Will it contain tokens that will be replaced by ... >>> both tokenized, so the content in them is session driven by cookies, ...
    (comp.databases.pick)
  • [NEWS] Datalex BookIt! Consumer Password Vulnerabilities
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Datalex PLC's BookIt! ... Storing authentication credentials in cookies is never a good idea as ...
    (Securiteam)
  • Re: How do we get there from here?
    ... > figure out I have cookies turned off...then have to open up my browser to ... If 10% of the potential shoppers can't view the web site at all, ... CSS is currently tested only under IE6 and the latest FF: ...
    (comp.databases.pick)
  • RE: IE6 Privacy and Secure Web Site
    ... all cookies from a specific web site or domain, ... to authorize cookies from that secure web site, ... > prompted for logon and password. ...
    (Focus-Microsoft)
  • Re: Macro to make certain fields non editable
    ... Graham Mayor - Word MVP ... Word MVP web site http://word.mvps.org ... say my document has a table wher in top row is the header row and we ...
    (microsoft.public.word.vba.general)