通過設(shè)置Access-Control-Allow-Origin來實(shí)現(xiàn)跨域谎亩。
例如:客戶端的域名是client.runoob.com梢薪,而請(qǐng)求的域名是server.runoob.com蹬铺。
如果直接使用ajax訪問,會(huì)有以下錯(cuò)誤:
XMLHttpRequest cannot load http://server.runoob.com/server.php. No 'Access-Control-Allow-Origin' header is present on the requested resource.Origin 'http://client.runoob.com' is therefore not allowed access.
允許單個(gè)域名訪問
指定某域名(http://client.runoob.com)跨域訪問秉撇,則只需在http://server.runoob.com/server.php文件頭部添加如下代碼:
header('Access-Control-Allow-Origin:http://client.runoob.com');
允許多個(gè)域名訪問
指定多個(gè)域名(http://client1.runoob.com甜攀、http://client2.runoob.com等)跨域訪問,則只需在http://server.runoob.com/server.php文件頭部添如下代碼:
$origin = isset($_SERVER['HTTP_ORIGIN'])? $_SERVER['HTTP_ORIGIN'] : '';
$allow_origin = array(
'http://client1.runoob.com',
'http://client2.runoob.com'
);
if(in_array($origin, $allow_origin)){
header('Access-Control-Allow-Origin:'.$origin);
}
允許所有域名訪問
允許所有域名訪問則只需在http://server.runoob.com/server.php文件頭部添加如下代碼:
header('Access-Control-Allow-Origin:*');