How to make Authorize attribute return custom 403 error page instead of redirecting to the Logon page
[Authorize] attribute is nice and handy MS invention, and I hope it can solve the issues I have now To be more specific: When current client isn't authenticated - [Authorize] redirects from secured action to logon page and after logon was successful - brings user back, this is good. But when current client already authenticated but not authorized to run specific action - all I need is to just display my general 403 page. Is it possible without moving authorization logic within controller's body? Update : The behavior I need in should be semantically equals to this sketch: public ActionResult