cors.js 570 B

1234567891011121314151617
  1. export default (req, res, next) => {
  2. if (req.headers.origin) {
  3. res.set({
  4. "Access-Control-Allow-Origin": req.headers.origin,
  5. "Access-Control-Allow-Credentials": true,
  6. "Access-Control-Allow-Methods": "OPTIONS, GET, POST",
  7. "Access-Control-Allow-Headers":
  8. "Content-Type, Cache-Control, Pragma, Expires, Authorization, X-Dataset-Total, X-Dataset-Offset, X-Dataset-Limit",
  9. "Access-Control-Max-Age": 5 * 60,
  10. "Access-Control-Expose-Headers": "X-Dataset-Total, X-Dataset-Offset, X-Dataset-Limit",
  11. });
  12. next();
  13. } else {
  14. // No origin
  15. next();
  16. }
  17. };