Skip to content

Commit 123a442

Browse files
committed
remove CORS headers from apache config to be handled in code instead
1 parent 1c4fad1 commit 123a442

1 file changed

Lines changed: 0 additions & 10 deletions

File tree

site.conf

Lines changed: 0 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -6,14 +6,4 @@
66
SSLEngine on
77
SSLCertificateFile "/tls/server.cert"
88
SSLCertificateKeyFile "/tls/server.key"
9-
10-
Header always set Access-Control-Allow-Origin *
11-
SetEnvIf Origin "(.+)" AccessControlAllowOrigin=$0
12-
Header always set Access-Control-Allow-Origin %{AccessControlAllowOrigin}e env=AccessControlAllowOrigin
13-
14-
Header always set Access-Control-Allow-Credentials true
15-
Header always set Access-Control-Allow-Headers "*, allow, accept, authorization, content-type, dpop, slug"
16-
Header always set Access-Control-Allow-Methods "GET, PUT, POST, OPTIONS, DELETE, PATCH"
17-
Header always set Accept-Patch: text/n3
18-
Header always set Access-Control-Expose-Headers "Authorization, User, Location, Link, Vary, Last-Modified, ETag, Accept-Patch, Accept-Post, Updates-Via, Allow, WAC-Allow, Content-Length, WWW-Authenticate, MS-Author-Via"
199
</VirtualHost>

0 commit comments

Comments
 (0)