.. _setting-webserver-cross-origin-request-header:
-``webserver-cross-origin-request_header``
+``webserver-cross-origin-request-header``
-----------------------------------------
.. versionadded:: 5.1.0
Cross origin requests
^^^^^^^^^^^^^^^^^^^^^
-The embedded webserver now does not include a ``access-control-allow-origin: *`` header by default.
+The embedded webserver now no longer includes a ``access-control-allow-origin: *`` header by default.
See :ref:`setting-webserver-cross-origin-request-header`.
zone display
::arg().set("webserver-max-concurrent-connections", "Webserver/API maximum concurrent connections allowed") = "100";
::arg().set("webserver-connection-timeout", "Webserver/API request/response timeout in seconds") = "5";
::arg().setSwitch("webserver-hash-plaintext-credentials", "Whether to hash passwords and api keys supplied in plaintext, to prevent keeping the plaintext version in memory at runtime") = "no";
- ::arg().set("webserver-cross-origin-request_header", "Webserver cross origin request header value") = "";
+ ::arg().set("webserver-cross-origin-request-header", "Webserver cross origin request header value") = "";
::arg().setSwitch("query-logging", "Hint backends that queries should be logged") = "no";
"versionchanged": ("4.6.0", "This setting now accepts a hashed and salted version."),
},
{
- "name": "cross_origin_request_heaer",
+ "name": "cross_origin_request_header",
"section": "webservice",
"type": LType.String,
"default": "",