Ah, this is
SAP is calling to TrustArc's cookie consent banner. The banner sets a cookie
notice_preferences indicating what choice the user made. On SAPs side, they try to read the cookie and check if the user has consented to cookies. If that fails because they can't find the cookie, they do a direct to
http://sitedown.concursolutions.com. The site we're on was a POST request, which isn't a safe request. Since TrustArc did not specify
sameSite in the cookie, the new default of
sameSite=lax gets to play, and because of that, SAP never sees the cookie.
The best resolution here is probably an update in TrustArc's library to set
sameSite=none. I'll try to get in touch.