I\'m currently using Auth0 (and an Angular 2 GUI), which sends a header of the type \"x-xsrf-token\"
in the request to a Spring Boot API.
I get the error:
try,
@Bean
public FilterRegistrationBean corsFilter() {
UrlBasedCorsConfigurationSource source = new UrlBasedCorsConfigurationSource();
CorsConfiguration config = new CorsConfiguration();
config.setAllowCredentials(true);
config.addAllowedOrigin("*");
config.addAllowedHeader("*");
config.addAllowedMethod("*");
source.registerCorsConfiguration("/**", config);
FilterRegistrationBean bean = new FilterRegistrationBean(new CorsFilter(source));
bean.setOrder(0);
return bean;
}
https://spring.io/blog/2015/06/08/cors-support-in-spring-framework