Sat, 03 Jan 2015 20:18:00 +0100
Conditionally enable double key logic according to:
private browsing mode or privacy.thirdparty.isolate preference and
implement in GetCookieStringCommon and FindCookie where it counts...
With some reservations of how to convince FindCookie users to test
condition and pass a nullptr when disabling double key logic.
michael@0 | 1 | |
michael@0 | 2 | function handleRequest(request, response) |
michael@0 | 3 | { |
michael@0 | 4 | var body = "loaded"; |
michael@0 | 5 | var origin = "localhost"; |
michael@0 | 6 | try { |
michael@0 | 7 | var origin = request.getHeader("Origin"); |
michael@0 | 8 | } catch(e) {} |
michael@0 | 9 | |
michael@0 | 10 | response.setHeader("Access-Control-Allow-Origin", |
michael@0 | 11 | origin, |
michael@0 | 12 | false); |
michael@0 | 13 | response.setHeader("Access-Control-Allow-Credentials", "true", false); |
michael@0 | 14 | response.setHeader("Connection", "Keep-alive", false); |
michael@0 | 15 | |
michael@0 | 16 | response.bodyOutputStream.write(body, body.length); |
michael@0 | 17 | } |