Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

teams.microsoft.com - When trying to input a TOTP from an authenticator it will not accept the input #132159

Open
influential-eliot opened this issue Jan 11, 2024 — with webcompat-app · 14 comments
Labels
browser-firefox engine-gecko The browser uses the Gecko rendering engine priority-critical status-needsinfo status-needsinfo-denschub ping @denschub trend-login OKR Label - Issues where login can not be performed

Comments

@influential-eliot
Copy link

URL: https://teams.microsoft.com

Browser / Version: Firefox 123.0
Operating System: Windows 10
Tested Another Browser: Yes Edge

Problem type: Site is not usable
Description: Unable to login
Steps to Reproduce:
The login flow is not functional for the new version of the Teams web app released on the 9th of Jan 2024. This seems to specifically affect the MFA login part. But others will not load.

When trying to input a TOTP from an authenticator it will not accept the input. This works within EDGE, when forced to input a code, but not Firefox.

The login occurs on the login.microsoftonline.com address redirected from the new web app. This did not occur previously. All other Microsoft 365 services login perfectly fine when redirected to this flow. When making a new TOTP for the account it will even challenge to test that you are setup correctly so it is accepting that, too. But after the new setup, nothing on teams.microsoft.com.

View the screenshot Screenshot
Browser Configuration
  • None

From webcompat.com with ❤️

@webcompat-bot webcompat-bot added this to the needstriage milestone Jan 11, 2024
@webcompat-bot webcompat-bot added browser-firefox priority-critical engine-gecko The browser uses the Gecko rendering engine labels Jan 11, 2024
@softvision-raul-bucata
Copy link

We appreciate your report. I was not able to reproduce the issue following the steps to reproduce, with multiple auth apps:

Screenshot_21

Tested with:

Browser / Version: Firefox Nightly 123.0a1 (2023-01-10) (64-bit)
Operating System: Windows 10 PRO x64

Suggestion: Try clearing cache/data/cookies, disabling add-ons and Ad-blocker (if available) and extensions or use a clean profile, and check again? If there are any changes made to the default settings of the browser (e.g. in about:config) please revert to the default settings and try again. Also, have the required cookies been accepted for this page?

[qa_02/2024]

@softvision-raul-bucata softvision-raul-bucata added status-needsinfo trend-login OKR Label - Issues where login can not be performed labels Jan 11, 2024
@influential-eliot
Copy link
Author

I am running this with Multiple Account Containers and this is a work setup. So I can't just remove the cookie as the MAC doesn't give me the ability to edit the container specific references for a cookie.

I need my other sessions to be current, deleting the cookie would delay work for multiple clients.

I have not had this issue on my E5 tenancy, but on my Business Basic tenancy it is an issue. It might still be an issue with E5, I don't know, I just have not been prompted, yet.

There is a background call to GET login.live.com/Me.htm which is failing twice, though ... one of which erroring with:

A resource is blocked by OpaqueResponseBlocking

(I am discussing this with MS, too)

@softvision-raul-bucata
Copy link

@influential-eliot Thanks for the update. I am guessing that testing with a different auth app is not possible, based on the above reply.
What I would do usually to test this kind of issue, is:

  1. Type about:profiles in the url bar.
  2. Choose Create a new profile.
  3. Call it deleteme or anything you please.
  4. Then start it. (this way you will be sure that nothing is interfering, no ghost caching etc.)- make sure account sync is not performed, as the extensions will be imported in the new profile.
  5. Test.

[inv_02/2024]

@influential-eliot
Copy link
Author

Yeah, pretty much, @softvision-raul-bucata ... because this is simple TOTP generation. Plus the codes have been verified in the My Accounts screen and other login areas (say, Outlook, for example) ...

I'll try give your suggestion a go, there ... and I'll consider the burn it all down approach.

However I am pretty sure that this is related to the login flow and how MS are implementing it in the new web app in relation to specific business licences, perhaps. We'll see.

@softvision-raul-bucata
Copy link

@influential-eliot Sure, please let me know the outcome. I have a feeling that Firefox and the TOTP generation code are not getting along.

[inv_02/2024]

@influential-eliot
Copy link
Author

See, I literally just used the TOTP code to log into admin.teams.microsoft.com. 😅

Perhaps their back-end is assigning a different TOTP MFA for the web app. 🤷

@softvision-raul-bucata
Copy link

@influential-eliot Can you please provide a screenshot covering the whole section of the ADD-ONS part, by typing about:support in your browser?

[inv_02/2024]

@influential-eliot
Copy link
Author

There are no add-ons other than MAC.

@softvision-raul-bucata
Copy link

@denschub Can you take a look, please?

[inv_02/2024]

@softvision-raul-bucata
Copy link

@influential-eliot Is the issue still reproducible on the lastest nightly build?

[inv_11/2024]

@influential-eliot
Copy link
Author

I think this is still happening.

I also think it is replicable to https://developer.microsoft.com/en-us/graph/graph-explorer too.

I can successfully log in with my work account on the MAC assigned to that tenancy. But when I load it in another MAC assigned to a different tenancy, it does not get past the 'Pick an account' popup.

@softvision-raul-bucata
Copy link

@influential-eliot Are the credentials saved/stored on the machine that reproduces the issue?

[inv_13/2024]

@influential-eliot
Copy link
Author

Hi, @softvision-raul-bucata ... the cookies are not blocked, if that's what you mean.

@influential-eliot Are the credentials saved/stored on the machine that reproduces the issue?

[inv_13/2024]

I tried it with all security set to its lowest and the cookies for a given tenancy / container cleared ... still no joy.

I have actually just raised the same / similar issue with the Graph Explorer, here:
microsoftgraph/microsoft-graph-explorer-v4#3104

Perhaps the relevant teams can interact, I dunno.

Either way, I store no passwords in the browser.

@softvision-raul-bucata
Copy link

@denschub Can you take a look, please?

[inv_15/2024]

@softvision-raul-bucata softvision-raul-bucata changed the title teams.microsoft.com - site is not usable teams.microsoft.com - When trying to input a TOTP from an authenticator it will not accept the input Apr 12, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
browser-firefox engine-gecko The browser uses the Gecko rendering engine priority-critical status-needsinfo status-needsinfo-denschub ping @denschub trend-login OKR Label - Issues where login can not be performed
Projects
None yet
Development

No branches or pull requests

3 participants