HTTP/1.1 301 Moved Permanently
date: Mon, 13 Nov 2023 14:04:35 GMT
server: Apache
status: 301 Moved Permanently
location: http://www.deutschebahn.com/mediathek
content-length: 0
content-type: text/html; charset=UTF-8
HTTP/1.0 302 Moved Temporarily
Location: https://www.deutschebahn.com/mediathek
Server: BigIP
Connection: Keep-Alive
Content-Length: 0
HTTP/1.1 301
date: Mon, 13 Nov 2023 14:04:35 GMT
vary: Origin,Access-Control-Request-Method,Access-Control-Request-Headers
location: http://mediathek.deutschebahn.com
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
strict-transport-security: max-age=16070400; includeSubDomains
x-frame-options: ALLOW-FROM https://dbwas.service.deutschebahn.com
content-security-policy: frame-ancestors 'self' https://dbwas.service.deutschebahn.com
content-language: de-DE
content-length: 0
set-cookie: ROUTEID=.2; path=/;Secure;HttpOnly
keep-alive: timeout=15, max=100
set-cookie: 74a9bed999c59f200cdb3c62c03ba12d=7488b79fb973a287905937780b45f1ee; path=/; HttpOnly
cache-control: private
connection: close
Set-Cookie: TS012e7c0f=01d513bcd17818103d374d308f97f916a768534314ae876f6d842fc0949649efe2ed7af60bc87977268bfc46471d6005e9af9e06dd; Path=/; Domain=.www.deutschebahn.com; Secure; HTTPOnly
HTTP/1.1 301 Moved Permanently
Date: Mon, 13 Nov 2023 14:04:35 GMT
Server: Apache
Location: https://mediathek.deutschebahn.com/
Content-Length: 243
Connection: close
Content-Type: text/html; charset=iso-8859-1
HTTP/2 302
x-permitted-cross-domain-policies: all
referrer-policy: strict-origin-when-cross-origin
strict-transport-security: max-age=31536000; includeSubDomains
location: https://mediathek.deutschebahn.com/marsDB/index.xhtml
content-length: 237
content-type: text/html; charset=iso-8859-1
date: Mon, 13 Nov 2023 14:04:36 GMT
server: Apache
HTTP/2 302
x-permitted-cross-domain-policies: all
referrer-policy: strict-origin-when-cross-origin
strict-transport-security: max-age=31536000; includeSubDomains
vary: User-Agent
cache-control: max-age=0, private, no-store, no-cache, must-revalidate
p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT"
set-cookie: JSESSIONID=EfHdLu55ozt6ei11NfRTNn5UGaei4ifBaLfsa2Iq.DBAG; path=/marsDB; secure; HttpOnly; SameSite=Lax
x-xss-protection: 1; mode=block
pragma: no-cache, private
x-frame-options: sameorigin
location: https://mediathek.deutschebahn.com/marsDB/en/instance/ko/Landing-page-DB-Mediathek.xhtml?oid=6081
content-security-policy: default-src 'self' 'unsafe-inline' data: blob: *.jwpsrv.com *.jwpltx.com www.youtube.com www.youtube-nocookie.com *.deutschebahn.com *.mediamid.com *.googleapis.com *.gstatic.com *.ytimg.com; connect-src 'self' *.deutschebahn.com *.mediamid.com; media-src 'self' blob: *.deutschebahn.com *.mediamid.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.jwpcdn.com *.googleapis.com *.deutschebahn.com; frame-src 'self' mailto: www.youtube.com www.youtube-nocookie.com; frame-ancestors 'self'
date: Mon, 13 Nov 2023 14:04:36 GMT
clear-site-data: "cache"
content-length: 0
content-language: en
x-ua-compatible: IE=edge
x-content-type-options: nosniff
expires: Fri, 01 Jan 2010 00:00:00 GMT
content-type: application/xhtml+xml
server: Apache
HTTP/2 200
x-permitted-cross-domain-policies: all
referrer-policy: strict-origin-when-cross-origin
strict-transport-security: max-age=31536000; includeSubDomains
vary: User-Agent,Accept-Encoding
cache-control: max-age=0, private, no-store, no-cache, must-revalidate
p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT"
set-cookie: JSESSIONID=Sy7a6EJIr5-38IdH9JpRI8BMAtg0-WuxAfNHpBMX.DBAG; path=/marsDB; secure; HttpOnly; SameSite=Lax
x-xss-protection: 1; mode=block
pragma: no-cache, private
x-frame-options: sameorigin
content-security-policy: default-src 'self' 'unsafe-inline' data: blob: *.jwpsrv.com *.jwpltx.com www.youtube.com www.youtube-nocookie.com *.deutschebahn.com *.mediamid.com *.googleapis.com *.gstatic.com *.ytimg.com; connect-src 'self' *.deutschebahn.com *.mediamid.com; media-src 'self' blob: *.deutschebahn.com *.mediamid.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.jwpcdn.com *.googleapis.com *.deutschebahn.com; frame-src 'self' mailto: www.youtube.com www.youtube-nocookie.com; frame-ancestors 'self'
date: Mon, 13 Nov 2023 14:04:36 GMT
clear-site-data: "cache"
content-language: en
x-ua-compatible: IE=edge
x-content-type-options: nosniff
expires: Fri, 01 Jan 2010 00:00:00 GMT
content-type: text/html;charset=UTF-8
server: Apache
|