12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455 |
- <?php
- namespace app\http\middleware;
- use app\Request;
- use crmeb\interfaces\MiddlewareInterface;
- use think\facade\Config;
- use think\Response;
- class AllowOriginMiddleware implements MiddlewareInterface
- {
-
- protected $cookieDomain;
-
- public function handle(Request $request, \Closure $next)
- {
- $this->cookieDomain = Config::get('cookie.domain', '');
- $header = Config::get('cookie.header');
- $origin = $request->header('origin');
- if ($origin && ('' == $this->cookieDomain || strpos($origin, $this->cookieDomain)))
- $header['Access-Control-Allow-Origin'] = $origin;
- if ($request->method(true) == 'OPTIONS') {
- $response = Response::create('ok')->code(200)->header($header);
- } else {
- $response = $next($request)->header($header);
- }
- $request->filter(['strip_tags', 'addslashes', 'trim']);
- return $response;
- }
- }
|