linwu 7 小時之前
父節點
當前提交
5fa882ff15

+ 4 - 4
app/Http/Controllers/Api/Config/BiController.php

@@ -16,10 +16,10 @@ class BiController extends ApiBaseController
 {
     public function __construct()
     {
-        header('Access-Control-Allow-Origin:*');
-        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
-        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept, X-CSRF-TOKEN');
-        header('Access-Control-Allow-Credentials:true');
+//        header('Access-Control-Allow-Origin:*');
+//        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
+//        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept, X-CSRF-TOKEN');
+//        header('Access-Control-Allow-Credentials:true');
 
     }
 

+ 4 - 4
app/Http/Controllers/Web/Content/BuyhouseController.php

@@ -536,10 +536,10 @@ class BuyhouseController extends WebBaseController
      */
     public function upload(Request $request)
     {
-        header('Access-Control-Allow-Origin:*');
-        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
-        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept, X-CSRF-TOKEN');
-        header('Access-Control-Allow-Credentials:true');
+//        header('Access-Control-Allow-Origin:*');
+//        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
+//        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept, X-CSRF-TOKEN');
+//        header('Access-Control-Allow-Credentials:true');
 
         $file = $request->file('file');
         if ($file->isValid()) { //判断文件是否存在

+ 4 - 4
app/Http/Controllers/Web/Recruit/ApiController.php

@@ -24,10 +24,10 @@ class ApiController extends WebBaseController
     {
         $this->pmsRepository = $pmsRepository;
         $this->smsService    = $smsService;
-        header('Access-Control-Allow-Origin:*');
-        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
-        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept, X-CSRF-TOKEN');
-        header('Access-Control-Allow-Credentials:true');
+//        header('Access-Control-Allow-Origin:*');
+//        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
+//        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept, X-CSRF-TOKEN');
+//        header('Access-Control-Allow-Credentials:true');
 
     }
 

+ 4 - 4
app/Http/Controllers/Web/Share/ApiController.php

@@ -15,10 +15,10 @@ class ApiController extends WebBaseController
 
     public function __construct(PmsRepository $pmsRepository)
     {
-        header('Access-Control-Allow-Origin:*');
-        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
-        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept');
-        header('Access-Control-Allow-Credentials:true');
+//        header('Access-Control-Allow-Origin:*');
+//        header('Access-Control-Allow-Methods:GET,POST,PUT,DELETE');
+//        header('Access-Control-Allow-Headers:Origin, Content-Type, Cookie, Accept');
+//        header('Access-Control-Allow-Credentials:true');
         $this->pmsRepository = $pmsRepository;
     }
 

+ 1 - 0
app/Http/Middleware/CrossDomain.php

@@ -15,6 +15,7 @@ class CrossDomain
         header('Strict-Transport-Security:max-age=180');
         header('X-Download-Options: noopen');
         header('X-Permitted-Cross-Domain-Policies: none');
+        header('Access-Control-Allow-Credentials:true');
         return $next($request);
     }
 }