HTTP/1.1 301 Moved Permanently
Date: Sun, 27 Feb 2022 09:24:08 GMT
Server: Apache
Location: https://ma-portal.at/
Content-Type: text/html; charset=iso-8859-1
HTTP/1.1 302 Found
Date: Sun, 27 Feb 2022 09:24:08 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; includeSubdomains;
Location: https://ma-portal.at/web/
Content-Type: text/html; charset=iso-8859-1
HTTP/1.1 302 Found
Date: Sun, 27 Feb 2022 09:24:08 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; includeSubdomains;
Content-Type: text/html; charset=utf-8
Location: /web/auth/login?next=/web/
X-Frame-Options: sameorigin
Vary: Cookie
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Referrer-Policy: no-referrer, strict-origin-when-cross-origin
Feature-Policy: accelerometer 'none'; ambient-light-sensor 'none'; autoplay 'none'; camera 'none'; encrypted-media 'none'; fullscreen 'self'; geolocation 'none'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; midi 'none'; payment 'none'; picture-in-picture 'none'; speaker 'none'; usb 'none'; vr 'none'
Content-Security-Policy: default-src 'self'; connect-src 'self'; frame-src 'self'; media-src 'self'; img-src 'self' data: https:; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; font-src 'self'; form-action 'self'; block-all-mixed-content; base-uri 'self'; require-sri-for script style; frame-ancestors 'self'; manifest-src 'self'
HTTP/1.1 301 Moved Permanently
Date: Sun, 27 Feb 2022 09:24:08 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; includeSubdomains;
Content-Type: text/html; charset=utf-8
Location: /web/auth/login/?next=/web/
X-Content-Type-Options: nosniff
X-Frame-Options: sameorigin
X-XSS-Protection: 1; mode=block
Referrer-Policy: no-referrer, strict-origin-when-cross-origin
Feature-Policy: accelerometer 'none'; ambient-light-sensor 'none'; autoplay 'none'; camera 'none'; encrypted-media 'none'; fullscreen 'self'; geolocation 'none'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; midi 'none'; payment 'none'; picture-in-picture 'none'; speaker 'none'; usb 'none'; vr 'none'
Content-Security-Policy: default-src 'self'; connect-src 'self'; frame-src 'self'; media-src 'self'; img-src 'self' data: https:; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; font-src 'self'; form-action 'self'; block-all-mixed-content; base-uri 'self'; require-sri-for script style; frame-ancestors 'self'; manifest-src 'self'
|