Forum Discussion
When CORS IS SET, Sometimes the request gives error when request originates from one domain and requests resource in another domain
This is wrt cors policy, Sometimes the request gives error when request originates from one domain and requests resource in another domain, the allow origin header is seen send for few of the request but it's not seen for some and that's when error comes up. Should I be doing anything on F5 and add the header as response for the server? There is ASM as well but I can't see anything blocked on the F5. Kindly please suggest possible ways to troubleshoot.
- Richard_Karon
Employee
Here is setup:
if your CORS headers are in the request and not in the response from the ASM device, checkout
K34183431: BIG-IP ASM security policy removes CORS headers when Cross-Domain Request Enforcement is 'disabled'
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com