liquid_feedback_frontend

view app/main/http_options.lua @ 1545:26a1ed6bc9df

Allow cross site request to validate endpoint
author bsw
date Thu Oct 22 11:52:15 2020 +0200 (2020-10-22)
parents 32cc544d5a5b
children 408e4b1d5234
line source
1 -- TODO workaround, needs to be resolved in WebMCP's request.handler
2 if not request._route then
3 return
4 end
6 if request.get_module() == "oauth2" and
7 (request.get_view() == "session" or request.get_view() == "validate")
8 then
9 local origin = request.get_header("Origin")
10 if origin then
11 request.add_header("Access-Control-Allow-Origin", origin)
12 end
13 request.add_header("Access-Control-Allow-Credentials", "true")
14 request.add_header("Access-Control-Max-Age", "0")
15 else
16 request.add_header("Access-Control-Allow-Origin", "*")
17 end
19 request.add_header("Access-Control-Allow-Headers", "Authorization")

Impressum / About Us