HTTP/1.1 301 Moved Permanently
Content-Security-Policy: media-src *; style-src 'self' https://* 'unsafe-inline'; script-src 'self' https://* 'unsafe-inline' 'unsafe-eval'; font-src 'self' https://*; connect-src 'self' https://*; frame-src 'self' https://*
Content-Type: text/html; charset=iso-8859-1
Date: Fri, 29 Jul 2022 16:43:10 GMT
Location: https://meinferrero.ferrero.de
Permissions-Policy: vibrate:(self)
Referrer-Policy: no-referrer-when-downgrade
Server: Redirect Server
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1
Content-Length: 238
Connection: keep-alive
HTTP/1.1 302 Found
Content-Type: text/html; charset=iso-8859-1
Date: Fri, 29 Jul 2022 16:43:11 GMT
Feature-Policy: vibrate 'self'; usermedia *; sync-xhr 'self'
Location: https://meinferrero.ferrero.de/cosca
Referrer-Policy: no-referrer-when-downgrade
Server: Apache/2.4.53 (Amazon)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1
Content-Length: 220
Connection: keep-alive
HTTP/1.1 302 Found
Date: Fri, 29 Jul 2022 16:43:11 GMT
Feature-Policy: vibrate 'self'; usermedia *; sync-xhr 'self'
Location: /cosca/
Referrer-Policy: no-referrer-when-downgrade
Server: Apache/2.4.53 (Amazon)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1
Content-Length: 0
Connection: keep-alive
HTTP/1.1 302 Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Language: de
Date: Fri, 29 Jul 2022 16:43:11 GMT
Expires: 0
Feature-Policy: vibrate 'self'; usermedia *; sync-xhr 'self'
Location: /cosca/my-account
Pragma: no-cache
Referrer-Policy: no-referrer-when-downgrade
Server: Apache/2.4.53 (Amazon)
Set-Cookie: JSESSIONID=B81F48E4F8B00391F70AAE41F7D75C6D; Path=/cosca; Secure; HttpOnly
Set-Cookie: JSESSIONID=B81F48E4F8B00391F70AAE41F7D75C6D; Path=/cosca; Secure; HttpOnly
Set-Cookie: anonymous=1; Expires=Sat, 29-Jul-2023 16:43:11 GMT; Path=/; HttpOnly
Set-Cookie: userGuid=5268301099b151dfdced265841fd18133a95931c; Version=1; Max-Age=315360000; Expires=Mon, 26-Jul-2032 16:43:11 GMT; Path=/; HttpOnly
Set-Cookie: AWSELB=B385315D02E5DCB86C1F9AA578DB55512E42433C024B76A7044E1F486BD55680CDFD146A421EEA66C5E3B8978D310E489B508B4AC3A30A56EFEB028A2FB1CC2D7A40F6B672B5D8141E0C29E03142E38C5221198F8B;PATH=/cosca;SECURE;HTTPONLY
Strict-Transport-Security: max-age=31536000; includeSubDomains
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
X-Content-Type-Options: nosniff
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Frame-Options:
X-XSS-Protection: 1
X-XSS-Protection: 1; mode=block
Content-Length: 0
Connection: keep-alive
HTTP/1.1 302 Found
Date: Fri, 29 Jul 2022 16:43:11 GMT
Feature-Policy: vibrate 'self'; usermedia *; sync-xhr 'self'
Location: https://accounts.ferrero.com/login?FEID=PT_DE_2015&CountryCode=DE&service=https%3A%2F%2Fmeinferrero.ferrero.de%2Fcosca%2Fmy-account&language=de
Referrer-Policy: no-referrer-when-downgrade
Server: Apache/2.4.53 (Amazon)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Frame-Options:
X-XSS-Protection: 1
Content-Length: 0
Connection: keep-alive
HTTP/2 200
server: Reblaze Secure Web Gateway
date: Fri, 29 Jul 2022 16:43:12 GMT
content-type: text/html;charset=UTF-8
vary: Accept-Encoding
vary: Accept-Encoding
pragma: no-cache
expires: Thu, 01 Jan 1970 00:00:00 GMT
cache-control: no-cache
cache-control: no-store
set-cookie: JSESSIONID=FAC340628B9D350AD2AD90747D5731AB; Path=/; Secure; HttpOnly
set-cookie: AWSALBAPP-0=AAAAAAAAAABzvvck5TNTD1oHhUq1FuAKBwwkKdmUUad2aVT1dCk4LFzc4OyeNjXI3AZDaiWLlhuCd3w1kTSBH5lDwHrz7LRW8Nfx0is6IbW11ejiurGxuaJcPZUHmW3hT0Gk/O5/Onhr87E=; Expires=Fri, 05 Aug 2022 16:43:12 GMT; Path=/
set-cookie: AWSALBAPP-1=_remove_; Expires=Fri, 05 Aug 2022 16:43:12 GMT; Path=/
set-cookie: AWSALBAPP-2=_remove_; Expires=Fri, 05 Aug 2022 16:43:12 GMT; Path=/
set-cookie: AWSALBAPP-3=_remove_; Expires=Fri, 05 Aug 2022 16:43:12 GMT; Path=/
strict-transport-security: max-age=63072000
content-security-policy: frame-ancestors 'self' *.ferrero.it *.de *.tictac.com *.kinder.it *.kinder.com *.nutella.com *.ipaasferrero.com *.pocketcoffee.it *.nutella.com *.estathe.it *.moncheri.it *.ferrerorocher.com
x-xss-protection: 1
x-content-type-options: nosniff
referrer-policy: no-referrer-when-downgrade
access-control-allow-headers: *
access-control-allow-methods: POST, PUT, GET, OPTIONS, DELETE
via: 1.1 google
alt-svc: clear
|