Skip to content

CORS 跨域的一点问题 #1

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
Raoul1996 opened this issue Jun 19, 2018 · 1 comment
Open

CORS 跨域的一点问题 #1

Raoul1996 opened this issue Jun 19, 2018 · 1 comment

Comments

@Raoul1996
Copy link

一般 CORS 跨域的时候不允许用户携带 cookie,此时设置 Access-Control-Allow-Origin* 可以允许所有域使用资源,但是如果允许携带 cookie 的话,服务端需要设置 Access-Control-Allow-Credentialstrue,同时 Access-Control-Allow-Origin 不能设置为 *,必须设置为前端所在的确切域名。

我记得是这样,文章写得很棒,非常感谢

@jaywcjlove
Copy link
Owner

@Raoul1996 回头我确认一下。再增加描述,感谢!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants