Allow all headers with CORS

This commit is contained in:
Basti 2012-02-29 18:18:01 +01:00
parent e338e93f5b
commit 30cd0536b2

View File

@ -29,7 +29,8 @@ class LiquorCabinet < Sinatra::Base
before "/:user/:category/:key" do
headers 'Access-Control-Allow-Origin' => '*',
'Access-Control-Allow-Methods' => 'GET, PUT, DELETE'
'Access-Control-Allow-Methods' => 'GET, PUT, DELETE',
'Access-Control-Allow-Headers' => 'Authorization'
@user, @category, @key = params[:user], params[:category], params[:key]
token = env["HTTP_AUTHORIZATION"] ? env["HTTP_AUTHORIZATION"].split(" ")[1] : ""