X-Git-Url: https://git.arvados.org/arvados.git/blobdiff_plain/0561bd0c3c07257fd58ded6c7cfa5feeae97af57..5b863886118890cc81b728a3a606ea823c836f2b:/services/api/test/integration/cross_origin_test.rb diff --git a/services/api/test/integration/cross_origin_test.rb b/services/api/test/integration/cross_origin_test.rb index 0dd8146bdd..5109ea46a6 100644 --- a/services/api/test/integration/cross_origin_test.rb +++ b/services/api/test/integration/cross_origin_test.rb @@ -36,11 +36,11 @@ class CrossOriginTest < ActionDispatch::IntegrationTest ['/arvados/v1/collections', '/arvados/v1/users', '/arvados/v1/api_client_authorizations'].each do |path| - test "CORS headers are set and body is stub at OPTIONS #{path}" do + test "CORS headers are set and body is empty at OPTIONS #{path}" do options path, {}, {} assert_response :success assert_cors_headers - assert_equal '-', response.body + assert_equal '', response.body end test "CORS headers are set at authenticated GET #{path}" do @@ -69,7 +69,7 @@ class CrossOriginTest < ActionDispatch::IntegrationTest %w(GET HEAD POST PUT DELETE).each do |m| assert_includes allowed, m, "A-C-A-Methods should include #{m}" end - assert_equal 'Authorization', response.headers['Access-Control-Allow-Headers'] + assert_equal 'Authorization, Content-Type', response.headers['Access-Control-Allow-Headers'] end def assert_no_cors_headers