clareq Posted June 20, 2016 Posted June 20, 2016 A member of staff has been given access to our academy chain lead school Sharepoint. When he tries to log on he gets a blank page when accessing online.microsoft.com. I don't when I use a local administrator account. I've built a clean machine, and put it in an OU with no GPOs attached, and I'm using a test user with no GPOs attached. The blank page still appears. I then tried a local user on the same machine - it worked. It can't therefore be a filtering issue, as unauthenticated users, such as the local user, go through our tightest filtering. It must be linked to a domain user, but no GPOs are attached, so what's different between a local restricted user and a domain user with no GPOs? Help!
Steve21 Posted June 20, 2016 Posted June 20, 2016 Have you tested turning on/off Internet Explorer Protected Mode for Internet Sites etc? Found that with some MS sites that seems to be on by default and hits domain users (unless the site is in trusted etc), but not local ones. Obviously wouldn't turn it off live wise, but easy test Steve 1
clareq Posted June 20, 2016 Author Posted June 20, 2016 No joy I'm afraid. Even tried putting the site into Trusted sites, still didn't work.
pete Posted June 20, 2016 Posted June 20, 2016 (edited) A domain user with no GPOs still gets default domain policy/things at the top-level of the domain. (Well, unless you sling them in an OU with blocked inheritance). Are you doing any HTTPS interception that could be causing it? Does it work in another browser? Is your test domain user pulling a default profile from somewhere? (chances are it is - what happens if you point the profile location it to the test user's homedir?) Does portal.office.com work? (it'll redirect to online.microsoftonline.com) Edited June 20, 2016 by pete 1
clareq Posted June 20, 2016 Author Posted June 20, 2016 They are in my testing OU, which has blocked inheritance. There is HTTPS interception, but that applies to those users for whom it is working as well. I've tried other browsers (Chrome) and get the same. There is a redirect on the profile - I'll look at that now. portal.office.com also doesn't work
Mr_Jiminy Posted June 20, 2016 Posted June 20, 2016 I'm sure I've experienced this and it was filters, although I take into consideration you're saying it isn't.
clareq Posted June 20, 2016 Author Posted June 20, 2016 It's the redirected profile - remove profile path from the user account in AD and I can log on.
clareq Posted June 20, 2016 Author Posted June 20, 2016 Right, next problem. I can now log onto microsoftonline.com, and can access the Excel spreadsheet the staff member needs to access. It is a complex spreadsheet, with workbook protection, so can't be opened with Excel on-line. However, when I try and open it with Excel locally, the program opens, but the file doesn't. A local user on a domain machine has the same problem, but on a machine off the domain, it works, even through our web filter. Back to testing...
pete Posted June 21, 2016 Posted June 21, 2016 ^ Does the Office event log show anything useful after failing to open it? Do you have any GPOs that specify trusted locations for Office docs? What happens if you upload an excel file - can you then download it and open it OK? (is it the specific file that's problematic (macros) or is it Office365)
clareq Posted June 21, 2016 Author Posted June 21, 2016 Nothing useful in the Event log. I'll look at uploading and downloading a file.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now