aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorvlad <vlad@driver.xyz>2017-06-15 15:00:29 -0700
committervlad <vlad@driver.xyz>2017-06-15 15:00:29 -0700
commitbbf890328ce1f66b2de5dd7de0d9fd90e16d536a (patch)
tree75eae7d8d430656e09bc692b9da8115e618b5cf6
parentccdb759b5a49b688441bd07653a933622177905c (diff)
downloaddriver-core-bbf890328ce1f66b2de5dd7de0d9fd90e16d536a.tar.gz
driver-core-bbf890328ce1f66b2de5dd7de0d9fd90e16d536a.tar.bz2
driver-core-bbf890328ce1f66b2de5dd7de0d9fd90e16d536a.zip
More CORS allowed headersv0.13.9
-rw-r--r--src/main/scala/xyz/driver/core/app.scala20
1 files changed, 19 insertions, 1 deletions
diff --git a/src/main/scala/xyz/driver/core/app.scala b/src/main/scala/xyz/driver/core/app.scala
index b3eb821..50e8847 100644
--- a/src/main/scala/xyz/driver/core/app.scala
+++ b/src/main/scala/xyz/driver/core/app.scala
@@ -70,7 +70,25 @@ object app {
request.headers.find(_.name().toLowerCase === headerName).map(_.value())
private val allowHeaders =
- `Access-Control-Allow-Headers`("Origin", "X-Requested-With", "Content-Type", "Accept")
+ `Access-Control-Allow-Headers`(
+ "Origin",
+ "X-Requested-With",
+ "Content-Type",
+ "Content-Length",
+ "Accept",
+ "X-Trace",
+ "Access-Control-Allow-Origin",
+ "Access-Control-Allow-Headers",
+ "Server",
+ "Date",
+ ContextHeaders.TrackingIdHeader,
+ ContextHeaders.StacktraceHeader,
+ "X-Frame-Options",
+ "X-Content-Type-Options",
+ "Strict-Transport-Security",
+ AuthProvider.SetAuthenticationTokenHeader,
+ AuthProvider.SetPermissionsTokenHeader
+ )
private def allowOrigin(originHeader: Option[Origin]) =
`Access-Control-Allow-Origin`(