Browser requests the referrer header Origin (return or abort request occurs Forbidden)

referrer:

Attached to the referrer address acquired by window.location.href, the link to prevent theft, prevent malicious requests

Origin:

There referrer function for cross-domain operation, as long as the standard browser will carry this cross-domain request header field, if allowed to address the background of this field, the normal request, If not, the browser will abort, no event, if no request had, network can not see

Guess you like

Origin blog.csdn.net/weixin_42204698/article/details/93632132
Recommended