.htaccess CORS headers not working Announcing the arrival of Valued Associate #679: Cesar Manara Planned maintenance scheduled April 17/18, 2019 at 00:00UTC (8:00pm US/Eastern) Come Celebrate our 10 Year Anniversary!How to solve “ExpiresActive not allowed here” error message in .htaccess file?How do I add Access-Control-Allow-Origin in NGINX?Access-Control-Allow-Origin “*” not allowed when credentials flag is true.htaccess Not Working Despite AllowOverride AllSetting Access-Control-Allow-Origin in .htaccess for Https protocolCORS headers not added in ApacheAdding subdomains in haproxy for CORSS3/Cloudfront CORS working on some files onlynginx: CORS headers are not added for OPTIONS requesthtaccess conditional header set is ignoring the condition

Multi tool use
Multi tool use

Does polymorph use a PC’s CR or its level?

Is above average number of years spent on PhD considered a red flag in future academia or industry positions?

List *all* the tuples!

Are my PIs rude or am I just being too sensitive?

Doubts about chords

How do I mention the quality of my school without bragging

Is high blood pressure ever a symptom attributable solely to dehydration?

If a contract sometimes uses the wrong name, is it still valid?

How much radiation do nuclear physics experiments expose researchers to nowadays?

Sorting numerically

Why is black pepper both grey and black?

Models of set theory where not every set can be linearly ordered

Does accepting a pardon have any bearing on trying that person for the same crime in a sovereign jurisdiction?

Stars Make Stars

"Seemed to had" is it correct?

Do I really need recursive chmod to restrict access to a folder?

Single word antonym of "flightless"

Can a non-EU citizen traveling with me come with me through the EU passport line?

Is there a way in Ruby to make just any one out of many keyword arguments required?

How widely used is the term Treppenwitz? Is it something that most Germans know?

How discoverable are IPv6 addresses and AAAA names by potential attackers?

What LEGO pieces have "real-world" functionality?

Did Xerox really develop the first LAN?

Bonus calculation: Am I making a mountain out of a molehill?



.htaccess CORS headers not working



Announcing the arrival of Valued Associate #679: Cesar Manara
Planned maintenance scheduled April 17/18, 2019 at 00:00UTC (8:00pm US/Eastern)
Come Celebrate our 10 Year Anniversary!How to solve “ExpiresActive not allowed here” error message in .htaccess file?How do I add Access-Control-Allow-Origin in NGINX?Access-Control-Allow-Origin “*” not allowed when credentials flag is true.htaccess Not Working Despite AllowOverride AllSetting Access-Control-Allow-Origin in .htaccess for Https protocolCORS headers not added in ApacheAdding subdomains in haproxy for CORSS3/Cloudfront CORS working on some files onlynginx: CORS headers are not added for OPTIONS requesthtaccess conditional header set is ignoring the condition



.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;








3















I've added the following at the top of my .htaccess file:



<IfModule mod_headers.c>
Header always set Access-Control-Allow-Origin "*"
Header always set Access-Control-Allow-Headers "Content-Type, Authorization"
Header always set Access-Control-Allow-Methods "GET,PUT,POST,DELETE"
Header always set Access-Control-Allow-Credentials true
</IfModule>


In order to allow a subdomain-served login screen to do an AJAX Request to the main domain. It works on localhost, but not on the actual server. I've googled around quite a lot but there doesn't seem to be a solution for this. I've already checked through SSH if apache mod_headers was loaded, and the LoadModule line is there on the httpd.conf file.










share|improve this question







New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.















  • 1





    When you have access to the httpd.conf file please don't use .htaccess files but place your desired settings in the main httpd.conf httpd.apache.org/docs/2.4/howto/htaccess.html#when

    – HBruijn
    Apr 10 at 14:12











  • Remove the <IfModule> wrapper. Any error? Are .htaccess overrides enabled?

    – MrWhite
    Apr 10 at 14:19











  • @MrWhite I already tested removing the IfModule but there was no difference nor errors. There's no override line in .htaccess

    – Joaquin Guevara
    Apr 10 at 14:24






  • 3





    The appropriate AllowOverride directive needs to be set in the server config before these directives in .htaccess will do anything.

    – MrWhite
    Apr 10 at 14:26






  • 1





    @MrWhite I've checked and the AllowOverride directive is there. Also, other directices in .htaccess work properly.

    – Joaquin Guevara
    Apr 11 at 6:23

















3















I've added the following at the top of my .htaccess file:



<IfModule mod_headers.c>
Header always set Access-Control-Allow-Origin "*"
Header always set Access-Control-Allow-Headers "Content-Type, Authorization"
Header always set Access-Control-Allow-Methods "GET,PUT,POST,DELETE"
Header always set Access-Control-Allow-Credentials true
</IfModule>


In order to allow a subdomain-served login screen to do an AJAX Request to the main domain. It works on localhost, but not on the actual server. I've googled around quite a lot but there doesn't seem to be a solution for this. I've already checked through SSH if apache mod_headers was loaded, and the LoadModule line is there on the httpd.conf file.










share|improve this question







New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.















  • 1





    When you have access to the httpd.conf file please don't use .htaccess files but place your desired settings in the main httpd.conf httpd.apache.org/docs/2.4/howto/htaccess.html#when

    – HBruijn
    Apr 10 at 14:12











  • Remove the <IfModule> wrapper. Any error? Are .htaccess overrides enabled?

    – MrWhite
    Apr 10 at 14:19











  • @MrWhite I already tested removing the IfModule but there was no difference nor errors. There's no override line in .htaccess

    – Joaquin Guevara
    Apr 10 at 14:24






  • 3





    The appropriate AllowOverride directive needs to be set in the server config before these directives in .htaccess will do anything.

    – MrWhite
    Apr 10 at 14:26






  • 1





    @MrWhite I've checked and the AllowOverride directive is there. Also, other directices in .htaccess work properly.

    – Joaquin Guevara
    Apr 11 at 6:23













3












3








3








I've added the following at the top of my .htaccess file:



<IfModule mod_headers.c>
Header always set Access-Control-Allow-Origin "*"
Header always set Access-Control-Allow-Headers "Content-Type, Authorization"
Header always set Access-Control-Allow-Methods "GET,PUT,POST,DELETE"
Header always set Access-Control-Allow-Credentials true
</IfModule>


In order to allow a subdomain-served login screen to do an AJAX Request to the main domain. It works on localhost, but not on the actual server. I've googled around quite a lot but there doesn't seem to be a solution for this. I've already checked through SSH if apache mod_headers was loaded, and the LoadModule line is there on the httpd.conf file.










share|improve this question







New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.












I've added the following at the top of my .htaccess file:



<IfModule mod_headers.c>
Header always set Access-Control-Allow-Origin "*"
Header always set Access-Control-Allow-Headers "Content-Type, Authorization"
Header always set Access-Control-Allow-Methods "GET,PUT,POST,DELETE"
Header always set Access-Control-Allow-Credentials true
</IfModule>


In order to allow a subdomain-served login screen to do an AJAX Request to the main domain. It works on localhost, but not on the actual server. I've googled around quite a lot but there doesn't seem to be a solution for this. I've already checked through SSH if apache mod_headers was loaded, and the LoadModule line is there on the httpd.conf file.







.htaccess cors






share|improve this question







New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.











share|improve this question







New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.









share|improve this question




share|improve this question






New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.









asked Apr 10 at 14:05









Joaquin GuevaraJoaquin Guevara

161




161




New contributor




Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.





New contributor





Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.






Joaquin Guevara is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.







  • 1





    When you have access to the httpd.conf file please don't use .htaccess files but place your desired settings in the main httpd.conf httpd.apache.org/docs/2.4/howto/htaccess.html#when

    – HBruijn
    Apr 10 at 14:12











  • Remove the <IfModule> wrapper. Any error? Are .htaccess overrides enabled?

    – MrWhite
    Apr 10 at 14:19











  • @MrWhite I already tested removing the IfModule but there was no difference nor errors. There's no override line in .htaccess

    – Joaquin Guevara
    Apr 10 at 14:24






  • 3





    The appropriate AllowOverride directive needs to be set in the server config before these directives in .htaccess will do anything.

    – MrWhite
    Apr 10 at 14:26






  • 1





    @MrWhite I've checked and the AllowOverride directive is there. Also, other directices in .htaccess work properly.

    – Joaquin Guevara
    Apr 11 at 6:23












  • 1





    When you have access to the httpd.conf file please don't use .htaccess files but place your desired settings in the main httpd.conf httpd.apache.org/docs/2.4/howto/htaccess.html#when

    – HBruijn
    Apr 10 at 14:12











  • Remove the <IfModule> wrapper. Any error? Are .htaccess overrides enabled?

    – MrWhite
    Apr 10 at 14:19











  • @MrWhite I already tested removing the IfModule but there was no difference nor errors. There's no override line in .htaccess

    – Joaquin Guevara
    Apr 10 at 14:24






  • 3





    The appropriate AllowOverride directive needs to be set in the server config before these directives in .htaccess will do anything.

    – MrWhite
    Apr 10 at 14:26






  • 1





    @MrWhite I've checked and the AllowOverride directive is there. Also, other directices in .htaccess work properly.

    – Joaquin Guevara
    Apr 11 at 6:23







1




1





When you have access to the httpd.conf file please don't use .htaccess files but place your desired settings in the main httpd.conf httpd.apache.org/docs/2.4/howto/htaccess.html#when

– HBruijn
Apr 10 at 14:12





When you have access to the httpd.conf file please don't use .htaccess files but place your desired settings in the main httpd.conf httpd.apache.org/docs/2.4/howto/htaccess.html#when

– HBruijn
Apr 10 at 14:12













Remove the <IfModule> wrapper. Any error? Are .htaccess overrides enabled?

– MrWhite
Apr 10 at 14:19





Remove the <IfModule> wrapper. Any error? Are .htaccess overrides enabled?

– MrWhite
Apr 10 at 14:19













@MrWhite I already tested removing the IfModule but there was no difference nor errors. There's no override line in .htaccess

– Joaquin Guevara
Apr 10 at 14:24





@MrWhite I already tested removing the IfModule but there was no difference nor errors. There's no override line in .htaccess

– Joaquin Guevara
Apr 10 at 14:24




3




3





The appropriate AllowOverride directive needs to be set in the server config before these directives in .htaccess will do anything.

– MrWhite
Apr 10 at 14:26





The appropriate AllowOverride directive needs to be set in the server config before these directives in .htaccess will do anything.

– MrWhite
Apr 10 at 14:26




1




1





@MrWhite I've checked and the AllowOverride directive is there. Also, other directices in .htaccess work properly.

– Joaquin Guevara
Apr 11 at 6:23





@MrWhite I've checked and the AllowOverride directive is there. Also, other directices in .htaccess work properly.

– Joaquin Guevara
Apr 11 at 6:23










0






active

oldest

votes












Your Answer








StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "2"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);

StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);

else
createEditor();

);

function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);



);






Joaquin Guevara is a new contributor. Be nice, and check out our Code of Conduct.









draft saved

draft discarded


















StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f962436%2fhtaccess-cors-headers-not-working%23new-answer', 'question_page');

);

Post as a guest















Required, but never shown

























0






active

oldest

votes








0






active

oldest

votes









active

oldest

votes






active

oldest

votes








Joaquin Guevara is a new contributor. Be nice, and check out our Code of Conduct.









draft saved

draft discarded


















Joaquin Guevara is a new contributor. Be nice, and check out our Code of Conduct.












Joaquin Guevara is a new contributor. Be nice, and check out our Code of Conduct.











Joaquin Guevara is a new contributor. Be nice, and check out our Code of Conduct.














Thanks for contributing an answer to Server Fault!


  • Please be sure to answer the question. Provide details and share your research!

But avoid


  • Asking for help, clarification, or responding to other answers.

  • Making statements based on opinion; back them up with references or personal experience.

To learn more, see our tips on writing great answers.




draft saved


draft discarded














StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f962436%2fhtaccess-cors-headers-not-working%23new-answer', 'question_page');

);

Post as a guest















Required, but never shown





















































Required, but never shown














Required, but never shown












Required, but never shown







Required, but never shown

































Required, but never shown














Required, but never shown












Required, but never shown







Required, but never shown







umucQj3IEmcv5hcspVjlOg7ai NJNpaBy9,LSVi6AhN M7cX9c8kJ bpnK2APbKJla oT2lbUYNeh8pcMsbRaZTD07psYeHck
K,W,hq,al9SL1UvOX6 jmBXj,yjbkvqcGM Z 5EI8HS7Z

Popular posts from this blog

RemoteApp sporadic failureWindows 2008 RemoteAPP client disconnects within a matter of minutesWhat is the minimum version of RDP supported by Server 2012 RDS?How to configure a Remoteapp server to increase stabilityMicrosoft RemoteApp Active SessionRDWeb TS connection broken for some users post RemoteApp certificate changeRemote Desktop Licensing, RemoteAPPRDS 2012 R2 some users are not able to logon after changed date and time on Connection BrokersWhat happens during Remote Desktop logon, and is there any logging?After installing RDS on WinServer 2016 I still can only connect with two users?RD Connection via RDGW to Session host is not connecting

Vilaño, A Laracha Índice Patrimonio | Lugares e parroquias | Véxase tamén | Menú de navegación43°14′52″N 8°36′03″O / 43.24775, -8.60070

Cegueira Índice Epidemioloxía | Deficiencia visual | Tipos de cegueira | Principais causas de cegueira | Tratamento | Técnicas de adaptación e axudas | Vida dos cegos | Primeiros auxilios | Crenzas respecto das persoas cegas | Crenzas das persoas cegas | O neno deficiente visual | Aspectos psicolóxicos da cegueira | Notas | Véxase tamén | Menú de navegación54.054.154.436928256blindnessDicionario da Real Academia GalegaPortal das Palabras"International Standards: Visual Standards — Aspects and Ranges of Vision Loss with Emphasis on Population Surveys.""Visual impairment and blindness""Presentan un plan para previr a cegueira"o orixinalACCDV Associació Catalana de Cecs i Disminuïts Visuals - PMFTrachoma"Effect of gene therapy on visual function in Leber's congenital amaurosis"1844137110.1056/NEJMoa0802268Cans guía - os mellores amigos dos cegosArquivadoEscola de cans guía para cegos en Mortágua, PortugalArquivado"Tecnología para ciegos y deficientes visuales. Recopilación de recursos gratuitos en la Red""Colorino""‘COL.diesis’, escuchar los sonidos del color""COL.diesis: Transforming Colour into Melody and Implementing the Result in a Colour Sensor Device"o orixinal"Sistema de desarrollo de sinestesia color-sonido para invidentes utilizando un protocolo de audio""Enseñanza táctil - geometría y color. Juegos didácticos para niños ciegos y videntes""Sistema Constanz"L'ocupació laboral dels cecs a l'Estat espanyol està pràcticament equiparada a la de les persones amb visió, entrevista amb Pedro ZuritaONCE (Organización Nacional de Cegos de España)Prevención da cegueiraDescrición de deficiencias visuais (Disc@pnet)Braillín, un boneco atractivo para calquera neno, con ou sen discapacidade, que permite familiarizarse co sistema de escritura e lectura brailleAxudas Técnicas36838ID00897494007150-90057129528256DOID:1432HP:0000618D001766C10.597.751.941.162C97109C0155020