1
0
mirror of https://github.com/bitwarden/server.git synced 2025-07-01 08:02:49 -05:00

set cors policies to only allow web vault origin (#787)

* set cors policy to only allow web vault

* vault cors policy service
This commit is contained in:
Kyle Spearrin
2020-06-23 18:47:53 -04:00
committed by GitHub
parent 2daca941f3
commit cf70a5e480
6 changed files with 24 additions and 17 deletions

View File

@ -169,7 +169,7 @@ namespace Bit.Api
app.UseRouting();
// Add Cors
app.UseCors(policy => policy.SetIsOriginAllowed(h => true)
app.UseCors(policy => policy.SetIsOriginAllowed(o => o == globalSettings.BaseServiceUri.Vault)
.AllowAnyMethod().AllowAnyHeader().AllowCredentials());
// Add authentication and authorization to the request pipeline.