@@ -499,8 +499,8 @@ server {
add_header 'Access-Control-Allow-Credentials' 'true';
}
if ($cors = "trueoptions") {
- add_header 'Access-Control-Allow-Origin' "$http_origin";
- # add_header 'Access-Control-Allow-Origin' '*';
+ #add_header 'Access-Control-Allow-Origin' "$http_origin";
+ add_header 'Access-Control-Allow-Origin' '*';
add_header 'Access-Control-Max-Age' 1728000;
add_header 'Access-Control-Allow-Headers' 'Authorization,Content-Type,Accept,Origin,User-Agent,DNT,Cache-Control,X-Mx-ReqToken,Keep-Alive,X-Requested-With,If-Modified-Since,X-CSRF-TOKEN,Cookie,x-xsrf-token,X-Request-Id';