Skip to content
Snippets Groups Projects
Verified Commit 6e7a6741 authored by Théodore Biadala's avatar Théodore Biadala
Browse files

Issue #2905848 by urvashi_vora, adeshsharma, shimpy, quietone, kkalashnikov,...

Issue #2905848 by urvashi_vora, adeshsharma, shimpy, quietone, kkalashnikov, rishabh vishwakarma, sourabhjain, mikejoconnor, alexpott, pradhumanjain2311, MeenakshiG, mr.baileys, smustgrave, sic, larowlan, longwave, johnhanley: Improve CORS configuration documentation
parent 2969dada
No related branches found
No related tags found
20 merge requests!11131[10.4.x-only-DO-NOT-MERGE]: Issue ##2842525 Ajax attached to Views exposed filter form does not trigger callbacks,!9470[10.3.x-only-DO-NOT-MERGE]: #3331771 Fix file_get_contents(): Passing null to parameter,!8736Update the Documention As per the Function uses.,!8513Issue #3453786: DefaultSelection should document why values for target_bundles NULL and [] behave as they do,!3878Removed unused condition head title for views,!3818Issue #2140179: $entity->original gets stale between updates,!3742Issue #3328429: Create item list field formatter for displaying ordered and unordered lists,!3731Claro: role=button on status report items,!3154Fixes #2987987 - CSRF token validation broken on routes with optional parameters.,!3133core/modules/system/css/components/hidden.module.css,!2964Issue #2865710 : Dependencies from only one instance of a widget are used in display modes,!2812Issue #3312049: [Followup] Fix Drupal.Commenting.FunctionComment.MissingReturnType returns for NULL,!2378Issue #2875033: Optimize joins and table selection in SQL entity query implementation,!2062Issue #3246454: Add weekly granularity to views date sort,!10223132456: Fix issue where views instances are emptied before an ajax request is complete,!877Issue #2708101: Default value for link text is not saved,!617Issue #3043725: Provide a Entity Handler for user cancelation,!579Issue #2230909: Simple decimals fail to pass validation,!560Move callback classRemove outside of the loop,!555Issue #3202493
Pipeline #261981 passed with warnings
Pipeline: drupal

#262008

    Pipeline: drupal

    #261998

      Pipeline: drupal

      #261985

        ......@@ -220,20 +220,39 @@ parameters:
        # Note: By default the configuration is disabled.
        cors.config:
        enabled: false
        # Specify allowed headers, like 'x-allowed-header'.
        # Specifies allowed headers and sets the Access-Control-Allow-Headers
        # header. For example, ['X-Custom-Header']. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Headers
        allowedHeaders: []
        # Specify allowed request methods, specify ['*'] to allow all possible ones.
        # Specifies allowed request methods and sets the
        # Access-Control-Allow-Methods header. For example, ['POST', 'GET',
        # 'OPTIONS'] or ['*'] to allow all. Note the wildcard is not yet implemented
        # in all browsers. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Methods
        allowedMethods: []
        # Configure requests allowed from specific origins. Do not include trailing
        # slashes with URLs.
        # Configure requests allowed from specific origins and sets the
        # Access-Control-Allow-Origin header. For example,
        # ['https://www.drupal.org'] or ['*'] to allow any origin to access your
        # resource. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Origin
        allowedOrigins: ['*']
        # Configure requests allowed from origins, matching against regex patterns.
        allowedOriginsPatterns: []
        # Sets the Access-Control-Expose-Headers header.
        # Sets the Access-Control-Expose-Headers header. The default is false which
        # means the header will not be set. To set the header use a comma delimited
        # list within square brackets. For example, ['Content-Type', 'Expires'] or
        # ['*'] to expose all headers. Setting exposedHeaders: ['*'] will result in
        # a Access-Control-Expose-Headers: * response header. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Expose-Headers
        exposedHeaders: false
        # Sets the Access-Control-Max-Age header.
        # Setting Access-Control-Max-Age header value to '0' or false will omit this
        # from the response. However, setting it to '-1' will explicitly disable
        # caching. For example, setting the value to 600 will cache results of a
        # preflight request for 10 minutes. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Max-Age
        maxAge: false
        # Sets the Access-Control-Allow-Credentials header.
        # Sets the Access-Control-Allow-Credentials header if set to true. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials
        supportsCredentials: false
        queue.config:
        ......
        ......@@ -220,20 +220,39 @@ parameters:
        # Note: By default the configuration is disabled.
        cors.config:
        enabled: false
        # Specify allowed headers, like 'x-allowed-header'.
        # Specifies allowed headers and sets the Access-Control-Allow-Headers
        # header. For example, ['X-Custom-Header']. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Headers
        allowedHeaders: []
        # Specify allowed request methods, specify ['*'] to allow all possible ones.
        # Specifies allowed request methods and sets the
        # Access-Control-Allow-Methods header. For example, ['POST', 'GET',
        # 'OPTIONS'] or ['*'] to allow all. Note the wildcard is not yet implemented
        # in all browsers. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Methods
        allowedMethods: []
        # Configure requests allowed from specific origins. Do not include trailing
        # slashes with URLs.
        # Configure requests allowed from specific origins and sets the
        # Access-Control-Allow-Origin header. For example,
        # ['https://www.drupal.org'] or ['*'] to allow any origin to access your
        # resource. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Origin
        allowedOrigins: ['*']
        # Configure requests allowed from origins, matching against regex patterns.
        allowedOriginsPatterns: []
        # Sets the Access-Control-Expose-Headers header.
        # Sets the Access-Control-Expose-Headers header. The default is false which
        # means the header will not be set. To set the header use a comma delimited
        # list within square brackets. For example, ['Content-Type', 'Expires'] or
        # ['*'] to expose all headers. Setting exposedHeaders: ['*'] will result in
        # a Access-Control-Expose-Headers: * response header. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Expose-Headers
        exposedHeaders: false
        # Sets the Access-Control-Max-Age header.
        # Setting Access-Control-Max-Age header value to '0' or false will omit this
        # from the response. However, setting it to '-1' will explicitly disable
        # caching. For example, setting the value to 600 will cache results of a
        # preflight request for 10 minutes. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Max-Age
        maxAge: false
        # Sets the Access-Control-Allow-Credentials header.
        # Sets the Access-Control-Allow-Credentials header if set to true. See
        # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials
        supportsCredentials: false
        queue.config:
        ......
        0% Loading or .
        You are about to add 0 people to the discussion. Proceed with caution.
        Finish editing this message first!
        Please register or to comment