Skip to main content

nanobus.transport.http.cors/v0

Description​

SecuritySource code

Options​

allowedOrigins​

allowedOrigins​string[]

AllowedOrigins is a list of origins a cross-domain request can be executed from. If the special "" value is present in the list, all origins will be allowed. An origin may contain a wildcard () to replace 0 or more characters (i.e.: http://.domain.com). Usage of wildcards implies a small performance penalty. Only one wildcard can be used per origin. Default value is [""]

allowedMethods​

allowedMethods​string[]

AllowedMethods is a list of methods the client is allowed to use with cross-domain requests. Default value is simple methods (HEAD, GET and POST).

allowedHeaders​

allowedHeaders​string[]

AllowedHeaders is list of non simple headers the client is allowed to use with cross-domain requests. If the special "*" value is present in the list, all headers will be allowed. Default value is [] but "Origin" is always appended to the list.

exposedHeaders​

exposedHeaders​string[]

ExposedHeaders indicates which headers are safe to expose to the API of a CORS API specification

maxAge​

maxAge​u32

MaxAge indicates how long (in seconds) the results of a preflight request can be cached

allowCredentials​

allowCredentials *​bool

AllowCredentials indicates whether the request can include user credentials like cookies, HTTP authentication or client side SSL certificates.

optionsPassthrough​

optionsPassthrough *​bool

OptionsPassthrough instructs preflight to let other potential next handlers to process the OPTIONS method. Turn this on if your application handles OPTIONS.

optionsSuccessStatus​

optionsSuccessStatus *​u32

Provides a status code to use for successful OPTIONS requests. Default value is http.StatusNoContent (204).