RESOLVING ISSUE WITH CROSS ORIGIN RESOURCE SHARING POLICY FOR WEBSITES
May 12, 2016 / by Marco / Categories : Technology, website, Websites
Another issue that we experienced was displaying content from different domains especially when using HTTP and HTTPS. Here’s an example of the error message:
Font from origin ‘https://website’ has been blocked from loading by Cross-Origin Resource Sharing policy: No ‘Access-Control-Allow-Origin’ header is present on the requested resource. Origin ‘http://website’ is therefore not allowed access.
The fix is to add the following statement to either the .htaccess file or if you’re using nginx VPS then add it to the nginx.conf file in /etc/nginx/
add_header ‘Access-Control-Allow-Origin’ ‘*’;
Once you’ve added it to the nginx.conf file make sure to restart the service by using the command:
service nginx restart
Then you can test it by using curl -I http://website
If the curl result has Access-Control-Allow-Origin: * then it means the nginx changes worked.
OTHER ARTICLES YOU MAY LIKE
SUPABASE BACKUP TUTORIAL: USE DBEAVER TO EXPORT YOUR DATABASE SAFELY
If you are building anything serious on Supabase, whether that is a client portal, a SaaS app, an internal dashboard, or even a small side project that is starting to get traction, having a reliable database backup process is one of those tasks that quickly moves from optional to essential. Supabase makes a lot of […]
read more
USE FUSEBASE TO AUTOMATE TEAMWORK AND COLLABORATION
If your business is growing, your team is juggling too many moving parts, and your client communication is spread across email threads, chat apps, documents, task boards, and endless follow ups, there is a good chance the real problem is not effort but fragmentation. Most businesses do not lose time because people are lazy. They […]
read more



