oidcserver: permit origin "*" from localhost testing
This commit is contained in:
@@ -724,7 +724,7 @@ async function start() {
|
||||
},
|
||||
clientBasedCORS(ctx, origin, client) {
|
||||
// allow CORS for clients where at least the origin matches where we redirect back to
|
||||
if (client.redirectUris.find((u) => u.indexOf(origin) === 0)) return true;
|
||||
if (client.redirectUris.find((u) => origin === '*' || u.indexOf(origin) === 0)) return true;
|
||||
|
||||
return false;
|
||||
},
|
||||
|
||||
Reference in New Issue
Block a user