HTTP/1.1 301 Moved Permanently
Date: Tue, 02 Nov 2021 17:09:32 GMT
Server: Apache
Referrer-Policy: strict-origin-when-cross-origin
Content-Security-Policy: default-src 'self' *.nrw.de; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.nrw.de *.google.com *.youtube.com *.youtu.be *.twimg.com *.twitter.com twitter.com *.jwpcdn.com *.gstatic.com *.googleapis.com *.googlesyndication.com *.openstreetmap.org *.mozilla.org *.vimeo.com *.vimeocdn.com *.flickr.com *.staticflickr.com *.cloudflare.com cdn.jsdelivr.net svc.webspellchecker.net; style-src 'self' 'unsafe-inline' *.nrw.de *.twitter.com twitter.com *.facebook.com *.googleapis.com *.twimg.com *.cloudflare.com cdn.jsdelivr.net svc.webspellchecker.net; font-src data: *; img-src data: *; frame-ancestors 'self' *.nrw.de *.facebook.com *.facebook.de *.twitter.com twitter.com *.google.com *.youtube.com *.youtu.be ytchannelembed.com; worker-src 'self' *.nrw.de *.facebook.com *.facebook.de *.twitter.com twitter.com *.google.com *.youtube.com *.youtu.be ytchannelembed.com *.openstreetmap.org broschueren.nordrheinwestfalendirekt.de; frame-src 'self' *.nrw.de *.facebook.com *.facebook.de *.twitter.com twitter.com *.google.com *.youtube.com *.youtu.be ytchannelembed.com *.openstreetmap.org broschueren.nordrheinwestfalendirekt.de; object-src 'self'; connect-src 'self' *.nrw.de svc.webspellchecker.net; media-src *;
Location: https://wiederaufbau.nrw/
Cache-Control: max-age=15
Expires: Tue, 02 Nov 2021 17:09:47 GMT
Content-Type: text/html; charset=iso-8859-1
HTTP/1.1 302 Found
Date: Tue, 02 Nov 2021 17:09:33 GMT
Server: Apache
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Strict-Transport-Security: max-age=31536000; preload
Set-Cookie: foerderplan=n4e257domgbcqved3gg40vhrno; path=/; HttpOnly; secure
Referrer-Policy: strict-origin-when-cross-origin
Location: /auth/login
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Permitted-Cross-Domain-Policies: master-only
Content-Type: text/html; charset=UTF-8
HTTP/1.1 200 OK
Date: Tue, 02 Nov 2021 17:09:33 GMT
Server: Apache
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Content-Security-Policy: base-uri 'self'; font-src 'self' https://fonts.gstatic.com; object-src; script-src 'self' https://wiederaufbau.nrw https://127.0.0.1 127.0.0.1 'nonce-K9Dl4HzviU5WEDurdhxDTBrr' 'nonce-h/go5J8RmTFlK7VUrnp03dda' 'nonce-XdbbEitTvrcTu3JZVgj4dGwf' 'nonce-zxN2v+xpRkPl1BBp+BC7xWQi' 'nonce-VaT6Ib7moquHDkVuVQEl7pvA' 'nonce-9S/HGa5zLNUcjcLGtLaISlG7' 'nonce-nH+ytVLu02qp5OczPBy8w7Hs' 'nonce-V7uJ5E4UGIRCSG8biV+U/Qhr' 'nonce-bsS2jjhS5Loh2ylJ8iL/i8ik' 'nonce-RN9KDjvHxUtFrrGORyhgjdZN' 'nonce-CrrnxScWGw5PXR6x3uz7NZrW' 'nonce-QJwXvl3gPv+cM/DyHHhQPily' 'nonce-Bzs1hPiBMqsqL2r1CbjcYS3I' 'nonce-WHVH1XEw6s45NK7XSsF2Jx7j' 'nonce-irReLZhnlsEIYiwSf/1vXhTR' 'nonce-RjE+o0BirI+E9xgevyE77l43' 'nonce-+gACDAIdrUkxvqqSRYuwr/b2' 'nonce-5hOD5mHWc00T1UaD06/6yQPl' 'nonce-kMq51KRjpq/Sceu3iBMXMpxl' 'unsafe-inline' 'unsafe-eval' 'strict-dynamic'; style-src 'self' 'unsafe-inline'; report-uri /csp/report;
X-Content-Security-Policy: base-uri 'self'; font-src 'self' https://fonts.gstatic.com; object-src; script-src 'self' https://wiederaufbau.nrw https://127.0.0.1 127.0.0.1 'nonce-K9Dl4HzviU5WEDurdhxDTBrr' 'nonce-h/go5J8RmTFlK7VUrnp03dda' 'nonce-XdbbEitTvrcTu3JZVgj4dGwf' 'nonce-zxN2v+xpRkPl1BBp+BC7xWQi' 'nonce-VaT6Ib7moquHDkVuVQEl7pvA' 'nonce-9S/HGa5zLNUcjcLGtLaISlG7' 'nonce-nH+ytVLu02qp5OczPBy8w7Hs' 'nonce-V7uJ5E4UGIRCSG8biV+U/Qhr' 'nonce-bsS2jjhS5Loh2ylJ8iL/i8ik' 'nonce-RN9KDjvHxUtFrrGORyhgjdZN' 'nonce-CrrnxScWGw5PXR6x3uz7NZrW' 'nonce-QJwXvl3gPv+cM/DyHHhQPily' 'nonce-Bzs1hPiBMqsqL2r1CbjcYS3I' 'nonce-WHVH1XEw6s45NK7XSsF2Jx7j' 'nonce-irReLZhnlsEIYiwSf/1vXhTR' 'nonce-RjE+o0BirI+E9xgevyE77l43' 'nonce-+gACDAIdrUkxvqqSRYuwr/b2' 'nonce-5hOD5mHWc00T1UaD06/6yQPl' 'nonce-kMq51KRjpq/Sceu3iBMXMpxl' 'unsafe-inline' 'unsafe-eval' 'strict-dynamic'; style-src 'self' 'unsafe-inline'; report-uri /csp/report;
X-Webkit-CSP: base-uri 'self'; font-src 'self' https://fonts.gstatic.com; object-src; script-src 'self' https://wiederaufbau.nrw https://127.0.0.1 127.0.0.1 'nonce-K9Dl4HzviU5WEDurdhxDTBrr' 'nonce-h/go5J8RmTFlK7VUrnp03dda' 'nonce-XdbbEitTvrcTu3JZVgj4dGwf' 'nonce-zxN2v+xpRkPl1BBp+BC7xWQi' 'nonce-VaT6Ib7moquHDkVuVQEl7pvA' 'nonce-9S/HGa5zLNUcjcLGtLaISlG7' 'nonce-nH+ytVLu02qp5OczPBy8w7Hs' 'nonce-V7uJ5E4UGIRCSG8biV+U/Qhr' 'nonce-bsS2jjhS5Loh2ylJ8iL/i8ik' 'nonce-RN9KDjvHxUtFrrGORyhgjdZN' 'nonce-CrrnxScWGw5PXR6x3uz7NZrW' 'nonce-QJwXvl3gPv+cM/DyHHhQPily' 'nonce-Bzs1hPiBMqsqL2r1CbjcYS3I' 'nonce-WHVH1XEw6s45NK7XSsF2Jx7j' 'nonce-irReLZhnlsEIYiwSf/1vXhTR' 'nonce-RjE+o0BirI+E9xgevyE77l43' 'nonce-+gACDAIdrUkxvqqSRYuwr/b2' 'nonce-5hOD5mHWc00T1UaD06/6yQPl' 'nonce-kMq51KRjpq/Sceu3iBMXMpxl' 'unsafe-inline' 'unsafe-eval' 'strict-dynamic'; style-src 'self' 'unsafe-inline'; report-uri /csp/report;
Access-Control-Allow-Origin: wiederaufbau.nrw
Access-Control-Allow-Credentials: false
X-Frame-Options: SAMEORIGIN
X-Xss-Protection: 1; mode=block
X-Content-Type-Options: nosniff
X-Powered-By:
Referrer-Policy: strict-origin-when-cross-origin
Feature-Policy: geolocation 'none'; midi 'none'; usb 'none'; sync-xhr 'self'; microphone 'none'; camera 'none'; magnetometer 'none';gyroscope 'none'; autoplay 'none'; fullscreen 'self'; payment 'none';
Strict-Transport-Security: max-age=31536000; preload
Set-Cookie: foerderplan=i0g75qokfmj16ju841tli25u3o; path=/; HttpOnly; secure
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Permitted-Cross-Domain-Policies: master-only
Content-Type: text/html; charset=UTF-8
|