Kristian Lake
01/20/2022, 10:17 PMDerek Kershner
01/20/2022, 10:35 PMHEAD
preflight call, and the response is a 500.Derek Kershner
01/20/2022, 10:37 PMKristian Lake
01/20/2022, 10:38 PMKristian Lake
01/20/2022, 10:38 PMKristian Lake
01/20/2022, 10:38 PMKristian Lake
01/20/2022, 10:39 PMKristian Lake
01/20/2022, 10:39 PMKristian Lake
01/20/2022, 10:39 PMKristian Lake
01/20/2022, 10:39 PMKristian Lake
01/20/2022, 10:39 PMDerek Kershner
01/20/2022, 10:39 PMDerek Kershner
01/20/2022, 10:40 PM<http://localhost:3000>
to the allowOrigins
Kristian Lake
01/20/2022, 10:40 PMDerek Kershner
01/20/2022, 10:40 PMKristian Lake
01/20/2022, 10:40 PMDerek Kershner
01/20/2022, 10:41 PMallowHeaders: ["*"],
Derek Kershner
01/20/2022, 10:41 PMcors: true
Ross Coundon
01/20/2022, 10:42 PMKristian Lake
01/20/2022, 10:42 PMKristian Lake
01/20/2022, 10:44 PMKristian Lake
01/20/2022, 10:44 PMDerek Kershner
01/20/2022, 10:45 PMKristian Lake
01/20/2022, 10:45 PMKristian Lake
01/20/2022, 10:45 PMDerek Kershner
01/20/2022, 10:45 PMKristian Lake
01/20/2022, 10:45 PMKristian Lake
01/20/2022, 10:46 PMKristian Lake
01/20/2022, 10:46 PMKristian Lake
01/20/2022, 10:46 PMKristian Lake
01/20/2022, 10:47 PMKristian Lake
01/20/2022, 10:47 PMDerek Kershner
01/20/2022, 10:47 PMKristian Lake
01/20/2022, 10:47 PMDerek Kershner
01/20/2022, 10:49 PMlocalhost
in cors is not a huge security risk, because a user's system would need something running locally to hit that address, so the user would need to be the nefarious person, in which case CORS has no value anyway (its for users out of the internet getting spoofed)Derek Kershner
01/20/2022, 10:49 PMKristian Lake
01/20/2022, 10:49 PMKristian Lake
01/20/2022, 10:49 PMDerek Kershner
01/20/2022, 10:50 PMKristian Lake
01/20/2022, 10:50 PMDerek Kershner
01/20/2022, 10:51 PMKristian Lake
01/20/2022, 10:52 PMKristian Lake
01/20/2022, 10:52 PMKristian Lake
01/20/2022, 10:52 PMDerek Kershner
01/20/2022, 10:52 PMCorsHttpMethod
Derek Kershner
01/20/2022, 10:53 PMKristian Lake
01/20/2022, 10:53 PMDerek Kershner
01/20/2022, 10:53 PMallowMethods: [apig.CorsHttpMethod.ANY],
Kristian Lake
01/20/2022, 10:54 PMDerek Kershner
01/20/2022, 10:55 PMKristian Lake
01/20/2022, 10:56 PMKristian Lake
01/20/2022, 10:58 PMKristian Lake
01/20/2022, 10:58 PMKristian Lake
01/20/2022, 10:58 PMDerek Kershner
01/20/2022, 10:58 PMcors: true
Kristian Lake
01/20/2022, 10:59 PMKristian Lake
01/20/2022, 10:59 PMKristian Lake
01/20/2022, 11:00 PMDerek Kershner
01/20/2022, 11:04 PMDerek Kershner
01/20/2022, 11:04 PMcors:true
work?Derek Kershner
01/20/2022, 11:04 PMDerek Kershner
01/20/2022, 11:05 PMKristian Lake
01/20/2022, 11:05 PMDerek Kershner
01/20/2022, 11:05 PMallowedOrigins
=> allowOrigins
Kristian Lake
01/20/2022, 11:05 PMDerek Kershner
01/20/2022, 11:06 PMKristian Lake
01/20/2022, 11:07 PMKristian Lake
01/20/2022, 11:07 PMKristian Lake
01/20/2022, 11:07 PMKristian Lake
01/20/2022, 11:07 PMKristian Lake
01/20/2022, 11:08 PMDerek Kershner
01/20/2022, 11:08 PMKristian Lake
01/20/2022, 11:08 PMKristian Lake
01/20/2022, 11:09 PMKristian Lake
01/20/2022, 11:18 PMKristian Lake
01/20/2022, 11:18 PM