We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 11887
    • 34 Posts
    Hi all

    I am in the process of setting up a site with access control for web users, using winloginpe.

    I have created an "unauthorized" page within modx, this is just a standard page without any access control, hidden from the menu.

    Then, I have set Tools > Configuration > Site > Unauthorized Page to the ID of the page created above.

    However when I attempt to hit a secured page when I’m not logged in as a web user, it gives me a standard Error 401 from my webserver. (Actually, I have customized this Error 401 page as my webserver allows this.)

    This is causing problems; say a user attempts to hit the page before logging in (may be likely) then they get the 401 page. Unfortunately if they then log in and try to hit the page again, for some reason it is cached, and they get the Error 401 again.

    Of course, if the user then hits refresh, the page works.

    But 99.99% of users won’t think to hit refresh. It will just look like it didn’t log them in properly.

    I’m guessing that if my "unauthorized" page within modx was used, this wouldn’t be an issue.

    Can someone help?

    Thanks!

    Mat