You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
to add the following HTTP header to responses to GET, where * indicates that code from any origin should be able to read data from QA.:
Access-Control-Allow-Origin: *
to support the OPTIONS HTTP method on the same resource, for which I think can be just the addition of the HTTP methods supported, perhaps a 204 with headers:
CORS headers and OPTIONS HTTP method support were added to QA in PR samvera/questioning_authority#172. At this writing, the PR is pending review and merge. It was added as a configurable option, so I do not expect any objects to it merging.
This work is essentially done. It is configured to be enabled in cul-it/qa_server. It will be available in production when the production system comes back on line.
The key requirements are:
*
indicates that code from any origin should be able to read data from QA.:OPTIONS
HTTP method on the same resource, for which I think can be just the addition of the HTTP methods supported, perhaps a 204 with headers:See http://www.w3.org/TR/cors/ for gory details, https://fetch.spec.whatwg.org/#cors-protocol for more a intelligible descriptions.
Examples in Ruby in RIIF -- add ACAO and adding support for
OPTIONS
(which in this case allows theAuthorization
header, not needed for QA I assume).The text was updated successfully, but these errors were encountered: