|
1 | 1 | import { FreshContext } from "$fresh/server.ts";
|
2 | 2 |
|
| 3 | +const HTTP_HEADER = { |
| 4 | + ACCESS_CONTROL_ALLOW_ORIGIN: "Access-Control-Allow-Origin", |
| 5 | + ACCESS_CONTROL_ALLOW_METHODS: "Access-Control-Allow-Methods", |
| 6 | + ACCESS_CONTROL_ALLOW_CREDENTIALS: "Access-Control-Allow-Credentials", |
| 7 | + ACCESS_CONTROL_ALLOW_HEADERS: "Access-Control-Allow-Headers", |
| 8 | +}; |
| 9 | + |
| 10 | +const HTTP_METHOD = { |
| 11 | + GET: "GET", |
| 12 | + PUT: "PUT", |
| 13 | + POST: "POST", |
| 14 | + DELETE: "DELETE", |
| 15 | + OPTIONS: "OPTIONS", |
| 16 | +}; |
| 17 | + |
3 | 18 | interface State {
|
4 | 19 | data: string;
|
5 | 20 | }
|
6 | 21 |
|
7 | 22 | export async function handler(
|
8 |
| - _req: Request, |
| 23 | + req: Request, |
9 | 24 | ctx: FreshContext<State>,
|
10 | 25 | ) {
|
11 |
| - ctx.state.data = "myData"; |
| 26 | + if (req.method == HTTP_METHOD.OPTIONS) { |
| 27 | + const resp = new Response(null, { |
| 28 | + status: 204, |
| 29 | + }); |
| 30 | + const origin = req.headers.get("Origin") || "*"; |
| 31 | + const headers = resp.headers; |
| 32 | + headers.set(HTTP_HEADER.ACCESS_CONTROL_ALLOW_ORIGIN, origin); |
| 33 | + headers.set(HTTP_HEADER.ACCESS_CONTROL_ALLOW_METHODS, HTTP_METHOD.DELETE); |
| 34 | + return resp; |
| 35 | + } |
| 36 | + |
| 37 | + const origin = req.headers.get("Origin") || "*"; |
12 | 38 | const resp = await ctx.next();
|
| 39 | + const headers = resp.headers; |
| 40 | + |
| 41 | + headers.set(HTTP_HEADER.ACCESS_CONTROL_ALLOW_ORIGIN, origin); |
| 42 | + headers.set(HTTP_HEADER.ACCESS_CONTROL_ALLOW_CREDENTIALS, "true"); |
| 43 | + headers.set( |
| 44 | + HTTP_HEADER.ACCESS_CONTROL_ALLOW_HEADERS, |
| 45 | + "Content-Type, Content-Length, Accept-Encoding, X-CSRF-Token, Authorization, accept, origin, Cache-Control, X-Requested-With", |
| 46 | + ); |
| 47 | + headers.set( |
| 48 | + HTTP_HEADER.ACCESS_CONTROL_ALLOW_METHODS, |
| 49 | + `${HTTP_METHOD.POST}, ${HTTP_METHOD.OPTIONS}, ${HTTP_METHOD.GET}, ${HTTP_METHOD.DELETE}, ${HTTP_METHOD.PUT}`, |
| 50 | + ); |
| 51 | + |
| 52 | + ctx.state.data = "myData"; |
13 | 53 | resp.headers.set("server", "fresh server");
|
14 | 54 | return resp;
|
15 | 55 | }
|
0 commit comments