Server: nginx
Content-Type: text/html;charset=utf-8
Vary: Accept-Encoding
Access-Control-Allow-Headers: action,challengeType,accesstoken,appVersion,,Content-Type,sid,CCPToken,CFIToken,countryCode,businessCode,channelId,uuid,client_id,environmentId
Access-Control-Allow-Methods: GET,PUT,POST,DELETE,HEAD
Access-Control-Expose-Headers: action,challengeType,bizToken,eventid,Eventid,Eventidexpirytime,eventidexpirytime,accesstoken,Authorization,sid,SessionId,CCPToken,CFIToken
Access-Control-Max-Age: 2147483647
Cache-Control: no-cache, no-store
Dclocation: GT1DMS
ETag: W/"a88c0-p8LQNL5w5r4GtDcoLGXRgvynVIY"
Expires: -1
Nonce: 2153569031029834
Pragma: no-cache
Scope: VISITOR
Sid: adcde66d-c1ec-4770-9e93-20f274559327
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Uuid: 4e3f8e5e-9438-4782-8a61-442a10e9a006
X-Content-Type-Options: nosniff
X-Content-Type-Options: nosniff
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
X-Vcap-Request-Id: 3ff79ad5-aa13-4e34-6293-6a3c7f2420ee
X-Xss-Protection: 1; mode=block
Date: Mon, 16 Nov 2020 20:12:47 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Connection: Transfer-Encoding
Access-Control-Allow-Credentials: true
Access-Control-Allow-Origin: https://citimobile.citibankonline.com
x-encoded-content-encoding: gzip
|