zouxuan преди 1 година
родител
ревизия
12360f2987
променени са 1 файла, в които са добавени 3 реда и са изтрити 4 реда
  1. 3 4
      mec-gateway/mec-gateway-web/src/main/java/com/ym/mec/gateway/web/filter/AuthFilter.java

+ 3 - 4
mec-gateway/mec-gateway-web/src/main/java/com/ym/mec/gateway/web/filter/AuthFilter.java

@@ -25,13 +25,12 @@ public class AuthFilter extends ZuulFilter {
 		RequestContext requestContext = RequestContext.getCurrentContext();
 		requestContext.getZuulRequestHeaders().put("HTTP_X_FORWARDED_FOR", getRealIp(requestContext.getRequest()));
 		HttpServletResponse response = requestContext.getResponse();
-		/*String origin = requestContext.getRequest().getHeader("Origin");
+		String origin = requestContext.getRequest().getHeader("Origin");
 		if (origin != null && origin.endsWith(".lexiaoya.cn")) {
 			response.setHeader("Access-Control-Allow-Origin", origin);
-		}*/
-		response.setHeader("Access-Control-Allow-Origin", "*");
+		}
 		response.setHeader("Access-Control-Allow-Methods", "GET, POST, PUT, DELETE, OPTIONS");
-		response.setHeader("Access-Control-Allow-Headers", "Access-Control-Allow-Origin, Cache-Control, TOKEN, Accept, content-type, Origin, X-Requested-With, Content-Type, Last-Modified, REQ-IDENTITY, Authorization");
+		response.setHeader("Access-Control-Allow-Headers", "Content-Type, Authorization");
 		response.setHeader("Access-Control-Allow-Credentials", "true");
 		response.setHeader("Access-Control-Max-Age", "3600");
 		return null;