LTI authentication works fine but when users clicks on "Embed" Button from our site this url get’s called :
In the request header we also see the Canvas_session cookie passed:
__utma=114663061.1741291069.1368201835.1368201835.1368201835.1;
__utmb=114663061.141.8.1368209066581;
__utmz=114663061.1368201835.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none);
canvas_session=6HoBfl6x5zoiNRjds0eYDg+dRfmooCv8tcnQewAsSK9lceKk3khzWMnlcWdqqSZKppTCP8OZMKmPF4MjcvttII-etHXZ7x1V94UDjY8VTYoXlrNY6NvpVxMoDylAMTNLDBF40N98ABNasMCV-so3IrXRNbQhuBwDnQTizn0r_aliRYZkcQnxVP9-ODmIu466dYxDeYyDlcFpzGiT4WdtGkt0kPfw_8nMJMMxTIJSwCrqoDBUugHjAXmgQsEUlaisNGT9rp2xPXoR3Z6TdRY_zVMFdk9RfmWZMCFrw9HZAAIjW-fVh-p3aYjlJiMHEXCFSkYtAcle8gfRKrQA39oGIk3UUzPmfc6cgQPhCi3ARFchvPz_27BzPoXmzTGIwai-1uIohytnZkw553GhuVvY0zeWpUgEc71hiy69bgE-UA3ntCML4x0_yk3PeyHQdy_ufI.Og-ie-Heyj9nrh9nogcZJS4XzQs.UY02ag;
__utmc=114663061
But then in popup where our tool was opened we see following error:
"
There was a problem with your last request. You may have tried to perform an action after a long period of inactivity. If that's the case, try going back, reloading the page you were working on, and resubmitting. If not, please let us know what you were doing when the error happened.
Click here to tell us what happened"
It appears as if Canvas was not able to recognize the session, however the user is logged in . The response header show an internal server happened :
Status=Internal Server Error - 500
Cache-Control=no-cache
Content-Encoding=gzip
Content-Type=text/html; charset=utf-8
Date=Fri, 10 May 2013 18:05:27 GMT
P3P=CP="None, see http://www.instructure.com/privacy-policy"
Server=Apache
Set-Cookie=canvas_session=gGug2Nb-n9bZlqk9vX8eBQ+btog0UYl_WA8hvH6fyhPsH3GcqFJuveaUwx5MqcVcLY0Cio7rE3NetOp4sdxpE0bzAKtfURfH1ODX9idv3GjtmhimaOC4qMMjdFj4gfqfJTCyJ2fyMTcbCw6s5ncLbrkjOG2fu3c_6IOOOwpBhPD7JFOZOU21wMxdKm1ib_YSw3rG2HUU01_y_8Q2QNXIRmtCrfdh-lALSZm3s-kzmEGWL0OqBwtgzEWiNtLkZj365VDMDHeFta1KFxTEShNJn6UsYYNFYrNIqx3Fgt8_ROxtSLF0s_DEuv3hs83vIuLPSD4w038NrT81Ntu-GIfAbnU9Y6O6Jy8MMPo9sdupy-WIYlZKT1SgDqccXANOQAXNUSiaYlMtR9KVRJ8-s4EWngrFIkFliZHCHjcRdDhxE73cwc5oMsjrZjr9De3J2TE7eE.6G_7Hbi8PDZFOiQXN_8H1bVtRwM.UY026A; path=/; secure; HttpOnly
Status=0
Vary=Accept-Encoding
X-Request-Context-Id=1e6e0750-9bca-0130-11b1-02e33ab6c202
X-Session-Id=c9c957ecffc286b15882db2ea4c13c2d
Content-Length=30904
Connection=keep-alive