HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Mon, 29 Jun 2020 11:07:03 GMT
Content-Type: text/html
Content-Length: 178
Connection: keep-alive
Location: https://www.costaextrasia.com
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Content-Security-Policy: default-src gap://ready file://* data: *; frame-ancestors 'self' *; style-src 'self' https://* 'unsafe-inline'; script-src 'self' https://* *.omtrdc.net s.btstatic.com www.googleadservices.com www.adobetag.com s.thebrighttag.com www.google-analytics.com pixel.rubiconproject.com ospe.costa.it d.turn.com bam.nr-data.net www.googletagmanager.com segment-pixel.invitemedia.com ds-aksb-a.akamaihd.net aws.tracker.squidanalytics.com platform.twitter.com apis.google.com connect.facebook.net aws.tracker.squidanalytics.com tagmanager.google.com *.criteo.net *.criteo.com *.doubleclick.net *.sepage.fr *.turn.com *.qualtrics.com *.youtube.com *.costa.it *.clickpoint.com *.hariken.co *.zanox.com server-it.imrworldwide.com https://d.turn.com https://bam.nr-data.net https://webcams.costa.it 'unsafe-inline' 'unsafe-eval'
HTTP/2 301
server: nginx
content-type: text/html; charset=UTF-8
content-length: 170
location: https://www.costaextrasia.com/CostaClick/en-PH/
sprequestguid: f21e619f-b3a5-50c1-f705-91bc1c905b67
request-id: f21e619f-b3a5-50c1-f705-91bc1c905b67
x-frame-options: SAMEORIGIN
x-powered-by: ASP.NET
microsoftsharepointteamservices: 15.0.0.4987
x-content-type-options: nosniff
x-ms-invokeapp: 1; RequireReadOnly
p3p: CP="Compact Values"
x-frame-options: SAMEORIGIN
access-control-allow-origin: *
access-control-allow-credentials: true
access-control-allow-headers: Content-Type
access-control-allow-methods: GET, POST, PUT, DELETE, OPTIONS
strict-transport-security: max-age=31536000
x-fe: VXWP412-B2BFE02-EVO
x-frame-options: SAMEORIGIN
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
content-security-policy: default-src gap://ready file://* data: *; frame-ancestors 'self' *; style-src 'self' https://* 'unsafe-inline'; script-src 'self' https://* *.omtrdc.net s.btstatic.com www.googleadservices.com www.adobetag.com s.thebrighttag.com www.google-analytics.com pixel.rubiconproject.com ospe.costa.it d.turn.com bam.nr-data.net www.googletagmanager.com segment-pixel.invitemedia.com ds-aksb-a.akamaihd.net aws.tracker.squidanalytics.com platform.twitter.com apis.google.com connect.facebook.net aws.tracker.squidanalytics.com tagmanager.google.com *.criteo.net *.criteo.com *.doubleclick.net *.sepage.fr *.turn.com *.qualtrics.com *.youtube.com *.costa.it *.clickpoint.com *.hariken.co *.zanox.com server-it.imrworldwide.com https://d.turn.com https://bam.nr-data.net https://webcams.costa.it 'unsafe-inline' 'unsafe-eval'
date: Mon, 29 Jun 2020 11:07:04 GMT
HTTP/2 302
server: nginx
content-type: text/html; charset=UTF-8
content-length: 188
location: http://www.costaextrasia.com/CostaClick/en-PH/Pages/Login.aspx
x-sharepointhealthscore: 0
sprequestguid: f21e619f-a3d6-50c1-7de9-fe7462e24fd8
request-id: f21e619f-a3d6-50c1-7de9-fe7462e24fd8
x-frame-options: SAMEORIGIN
sprequestduration: 7
spiislatency: 1
x-powered-by: ASP.NET
microsoftsharepointteamservices: 15.0.0.4987
x-content-type-options: nosniff
x-ms-invokeapp: 1; RequireReadOnly
p3p: CP="Compact Values"
x-frame-options: SAMEORIGIN
access-control-allow-origin: *
access-control-allow-credentials: true
access-control-allow-headers: Content-Type
access-control-allow-methods: GET, POST, PUT, DELETE, OPTIONS
strict-transport-security: max-age=31536000
x-fe: VXWP413-B2BFE03-EVO
x-frame-options: SAMEORIGIN
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
content-security-policy: default-src gap://ready file://* data: *; frame-ancestors 'self' *; style-src 'self' https://* 'unsafe-inline'; script-src 'self' https://* *.omtrdc.net s.btstatic.com www.googleadservices.com www.adobetag.com s.thebrighttag.com www.google-analytics.com pixel.rubiconproject.com ospe.costa.it d.turn.com bam.nr-data.net www.googletagmanager.com segment-pixel.invitemedia.com ds-aksb-a.akamaihd.net aws.tracker.squidanalytics.com platform.twitter.com apis.google.com connect.facebook.net aws.tracker.squidanalytics.com tagmanager.google.com *.criteo.net *.criteo.com *.doubleclick.net *.sepage.fr *.turn.com *.qualtrics.com *.youtube.com *.costa.it *.clickpoint.com *.hariken.co *.zanox.com server-it.imrworldwide.com https://d.turn.com https://bam.nr-data.net https://webcams.costa.it 'unsafe-inline' 'unsafe-eval'
date: Mon, 29 Jun 2020 11:07:05 GMT
HTTP/1.1 302 Moved Temporarily
Server: nginx
Content-Type: text/html; charset=utf-8
Content-Length: 183
Cache-Control: private, max-age=0
Expires: Sun, 14 Jun 2020 11:07:05 GMT
Last-Modified: Mon, 29 Jun 2020 11:07:05 GMT
Location: https://www.costaextrasia.com/CostaClick/en-PH/Pages/Login.aspx
X-SharePointHealthScore: 0
X-AspNet-Version: 4.0.30319
SPRequestGuid: f21e619f-03ed-50c1-7de9-fd2ce68532d8
request-id: f21e619f-03ed-50c1-7de9-fd2ce68532d8
X-FRAME-OPTIONS: SAMEORIGIN
SPRequestDuration: 47
SPIisLatency: 1
X-Powered-By: ASP.NET
MicrosoftSharePointTeamServices: 15.0.0.4987
X-Content-Type-Options: nosniff
X-MS-InvokeApp: 1; RequireReadOnly
P3P: CP="Compact Values"
X-Frame-Options: SAMEORIGIN
Access-Control-Allow-Origin: *
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers: Content-Type
Access-Control-Allow-Methods: GET, POST, PUT, DELETE, OPTIONS
Strict-Transport-Security: max-age=31536000
X-FE: VXWP413-B2BFE03-EVO
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Content-Security-Policy: default-src gap://ready file://* data: *; frame-ancestors 'self' *; style-src 'self' https://* 'unsafe-inline'; script-src 'self' https://* *.omtrdc.net s.btstatic.com www.googleadservices.com www.adobetag.com s.thebrighttag.com www.google-analytics.com pixel.rubiconproject.com ospe.costa.it d.turn.com bam.nr-data.net www.googletagmanager.com segment-pixel.invitemedia.com ds-aksb-a.akamaihd.net aws.tracker.squidanalytics.com platform.twitter.com apis.google.com connect.facebook.net aws.tracker.squidanalytics.com tagmanager.google.com *.criteo.net *.criteo.com *.doubleclick.net *.sepage.fr *.turn.com *.qualtrics.com *.youtube.com *.costa.it *.clickpoint.com *.hariken.co *.zanox.com server-it.imrworldwide.com https://d.turn.com https://bam.nr-data.net https://webcams.costa.it 'unsafe-inline' 'unsafe-eval'
Date: Mon, 29 Jun 2020 11:07:06 GMT
Connection: keep-alive
Set-Cookie: ASP.NET_SessionId=o5sveor0nwwifzaokhjngdba; path=/; HttpOnly; SameSite=None; Secure
HTTP/2 200
server: nginx
content-type: text/html; charset=utf-8
cache-control: private, max-age=0
expires: Sun, 14 Jun 2020 11:07:06 GMT
last-modified: Mon, 29 Jun 2020 11:07:06 GMT
x-sharepointhealthscore: 0
x-aspnet-version: 4.0.30319
sprequestguid: f31e619f-630c-50c1-130a-aaf3faec575d
request-id: f31e619f-630c-50c1-130a-aaf3faec575d
sprequestduration: 107
spiislatency: 0
x-powered-by: ASP.NET
microsoftsharepointteamservices: 15.0.0.4987
x-content-type-options: nosniff
x-ms-invokeapp: 1; RequireReadOnly
p3p: CP="Compact Values"
x-frame-options: SAMEORIGIN
access-control-allow-origin: *
access-control-allow-credentials: true
access-control-allow-headers: Content-Type
access-control-allow-methods: GET, POST, PUT, DELETE, OPTIONS
strict-transport-security: max-age=31536000
x-fe: VXWP411-B2BFE01-EVO
x-frame-options: SAMEORIGIN
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
content-security-policy: default-src gap://ready file://* data: *; frame-ancestors 'self' *; style-src 'self' https://* 'unsafe-inline'; script-src 'self' https://* *.omtrdc.net s.btstatic.com www.googleadservices.com www.adobetag.com s.thebrighttag.com www.google-analytics.com pixel.rubiconproject.com ospe.costa.it d.turn.com bam.nr-data.net www.googletagmanager.com segment-pixel.invitemedia.com ds-aksb-a.akamaihd.net aws.tracker.squidanalytics.com platform.twitter.com apis.google.com connect.facebook.net aws.tracker.squidanalytics.com tagmanager.google.com *.criteo.net *.criteo.com *.doubleclick.net *.sepage.fr *.turn.com *.qualtrics.com *.youtube.com *.costa.it *.clickpoint.com *.hariken.co *.zanox.com server-it.imrworldwide.com https://d.turn.com https://bam.nr-data.net https://webcams.costa.it 'unsafe-inline' 'unsafe-eval'
date: Mon, 29 Jun 2020 11:07:06 GMT
set-cookie: ASP.NET_SessionId=etfyg0ygbpbeofkoe01lzpng; path=/; HttpOnly; SameSite=None; Secure
|