zx/app/common/middleware/AllowOriginMiddleware.php

59 lines
2.1 KiB
PHP
Raw Permalink Normal View History

2024-07-02 15:32:59 +08:00
<?php
// +----------------------------------------------------------------------
// | CRMEB [ CRMEB赋能开发者助力企业发展 ]
// +----------------------------------------------------------------------
// | Copyright (c) 2016~2022 https://www.crmeb.com All rights reserved.
// +----------------------------------------------------------------------
// | Licensed CRMEB并不是自由软件未经许可不能去掉CRMEB相关版权
// +----------------------------------------------------------------------
// | Author: CRMEB Team <admin@crmeb.com>
// +----------------------------------------------------------------------
namespace app\common\middleware;
use app\Request;
use think\exception\HttpResponseException;
use think\facade\Config;
use think\Response;
/**
* 跨域中间件
* Class AllowOriginMiddleware
* @package app\http\middleware
*/
class AllowOriginMiddleware extends BaseMiddleware
{
/**
* header头
* @var array
*/
protected $header = [
'Access-Control-Allow-Origin' => '*',
'Access-Control-Allow-Headers' => 'X-Token, Content-Type, If-Match, If-Modified-Since, If-None-Match, If-Unmodified-Since, X-Requested-With,Form-type,Referer,Connection,Content-Length,Host,Origin,Authorization,Authori-zation,Accept,Accept-Encoding,Uuid',
//,Host,Origin,Authorization,Authori-zation,Accept,Accept-Encoding
//'Access-Control-Allow-Headers' => '*',
'Access-Control-Allow-Methods' => 'GET,POST,PATCH,PUT,DELETE,OPTIONS',
'Access-Control-Max-Age' => '1728000'
];
public function before(Request $request)
{
$cookieDomain = Config::get('cookie.domain', '');
$origin = $request->header('origin');
if ($origin && $cookieDomain && strpos($origin, $cookieDomain))
$this->header['Access-Control-Allow-Origin'] = $origin;
if ($request->method(true) == 'OPTIONS') {
throw new HttpResponseException(Response::create()->code(200)->header($this->header));
}
}
public function after(Response $response)
{
$response->header($this->header);
}
}