1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950 |
- <?php
- namespace App\Http\Middleware;
- use Closure;
- class CrossHttp
- {
- /**
- * Handle an incoming request.
- *
- * @param \Illuminate\Http\Request $request
- * @param \Closure $next
- * @return mixed
- */
- public function handle($request, Closure $next)
- {
- // $response = $next($request);
- // $response->header('Access-Control-Allow-Origin', '*'); //允许所有资源跨域
- // $response->header('Access-Control-Allow-Headers', 'Origin, Content-Type, Cookie, Accept, Authorization, application/json , X-Auth-Token');//允许通过的响应报头
- // $response->header('Access-Control-Allow-Methods', 'GET, POST, PATCH, PUT, OPTIONS, DELETE');//允许的请求方法
- // $response->header('Access-Control-Expose-Headers', 'Authorization');//允许axios获取响应头中的Authorization
- // $response->header('Allow', 'GET, POST, PATCH, PUT, OPTIONS, delete');//允许的请求方法
- // $response->header('Access-Control-Allow-Credentials', 'true');//运行客户端携带证书式访问
- // return $response;
- $response = $next($request);
- $IlluminateResponse = 'Illuminate\Http\Response';
- $SymfonyResopnse = 'Symfony\Component\HttpFoundation\Response';
- $headers = [
- 'Access-Control-Allow-Origin' => '*',
- 'Access-Control-Allow-Methods' => 'POST, GET, OPTIONS, PUT, PATCH, DELETE',
- 'Access-Control-Allow-Headers' => 'Access-Control-Allow-Headers, Origin,Accept, X-Requested-With, Content-Type, Access-Control-Request-Method, Authorization , Access-Control-Request-Headers, X-CSRF-TOKEN',
- ];
- if ($response instanceof $IlluminateResponse) {
- foreach ($headers as $key => $value) {
- $response->header($key, $value);
- }
- return $response;
- }
- if ($response instanceof $SymfonyResopnse) {
- foreach ($headers as $key => $value) {
- $response->headers->set($key, $value);
- }
- return $response;
- }
- return $response;
- }
- }
|