HTTP/1.1 302 Set-Cookie: JSESSIONID=15A95BFF5C9232F7379EF25D558B4E32; Path=/; Secure; HttpOnly Set-Cookie: JSESSIONID=15A95BFF5C9232F7379EF25D558B4E32; Secure; HttpOnly; Expires=22-03-2026 05:10:02; SameSite=None Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type, Authorization, X-Requested-With Access-Control-Allow-Credentials: false Access-Control-Max-Age: 3600 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block Strict-Transport-Security: max-age=31536000; includeSubDomains; preload Content-Security-Policy: default-src 'self'; frame-src 'self' blob:;img-src 'self' data:; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' X-Content-Security-Policy: default-src 'self'; frame-src 'self' blob:;img-src 'self' data:; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' X-WebKit-CSP: default-src 'self'; frame-src 'self' blob:;img-src 'self' data:; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' Referrer-Policy: strict-origin-when-cross-origin X-Download-Options: noopen X-Permitted-Cross-Domain-Policies: none x-frame-options: SAMEORIGIN Set-Cookie: JSESSIONID=1774123802; Secure; HttpOnly; Expires=22-03-2026 05:10:02 Location: base/frame/login.jsp?FM_SYS_ID=hr80 Content-Type: text/html;charset=utf-8 Content-Length: 0 Date: Sat, 21 Mar 2026 20:10:02 GMT