- From: Anne van Kesteren <annevk@annevk.nl>
- Date: Tue, 16 Apr 2013 19:33:18 +0100
- To: "Pellerin, Clement" <Clement_Pellerin@ibi.com>
- Cc: "public-webappsec@w3.org" <public-webappsec@w3.org>
On Tue, Apr 16, 2013 at 7:28 PM, Pellerin, Clement <Clement_Pellerin@ibi.com> wrote: > What should the value of the Allow header be in the response to a CORS preflight request? > Is the Allow header mandatory, optional, forbidden, ignored? Ignored. > What should a user agent client do when it gets inconsistent information between the Allow header and the Access-Control-Allow-Methods header? Does not matter. -- http://annevankesteren.nl/
Received on Tuesday, 16 April 2013 18:33:45 UTC