After I read this article, what I understand is that in order to allow cross-domain ajax calls, I have to set the server response to be Access-Control-Allow-Origin:
May be these lines of code solve your problem.
You can do one thing for that just need to set Access-Control-Allow-Origin & Access-Control-Allow-Headers in CustomeHeaders your web service web.config file.
<add name="Access-Control-Allow-Origin" value="*" />
<add name="Access-Control-Allow-Headers" value="Content-Type" />
If you want to allow only for specific domain , you can do that with specific value of domain instead of * value
Access-Control-Allow-Origin
, not Access - Control - Allow - Origin
self.response.headers.add_header(str)
is valid, maybe self.response.headers.add_header(key, name)
?*
domain doesn't work (at least not for all browsers). You have to use exact domain, full name, with protocol. Like http://example.com
Origin
header, for ajax call. I'm not sure how to configure raw xhr
, but I guess that it's made by browser itself, and you can't modify this value. Anyway, your domain not example