Upgrade: h2
X-Content-Type-Options: nosniff
Access-Control-Allow-Origin: http://www.bs-duexeiche.de
x-xss-protection: 1; mode=block
Pragma: no-cache
Server: BSPS7
Access-Control-Allow-Origin: http://www.bs-guethermann.de
Access-Control-Allow-Origin: http://www.bs-partnerservices.de
Date: Sat, 17 Feb 2018 17:47:19 GMT
Access-Control-Allow-Origin: http://www.bs-grieb.de
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Content-Type: text/html
Access-Control-Allow-Origin: http://www.bleckmannschulze.de
Access-Control-Allow-Origin: http://www.bs-seiffert.de
Connection: Upgrade
Access-Control-Max-Age: 1000
Access-Control-Allow-Origin: http://www.bs-salvo.de
Access-Control-Allow-Origin: http://www.bs-drabner.de
Access-Control-Allow-Origin: http://www.bs-steinfeldt.de
X-Frame-Options: sameorigin
Access-Control-Allow-Origin: http://www.bs-adam.de
Access-Control-Allow-Origin: http://www.bs-frielingsdorf-nord.de
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Strict-Transport-Security: max-age=31536000; includeSubDomains
Public-Key-Pins: pin-sha256="mYAPUngflDyUCse8j9H4Vidj3BIqd68KHjj0OAZbNMA="; pin-sha256="YLh1dUR9y6Kja30RrAn7JKnbQG/uEtLMkBgFF2Fuihg="; pin-sha256="Vjs8r4z+80wjNcr1YKepWQboSIRi63WsWXhIMN+eWys="; pin-sha256="KyKVCsRVuyEVhwA43nRqsDM5ISnVdGJewAMd6+pBNrk="; max-age=5184000; includeSubDomains
Access-Control-Allow-Headers: X-Requested-With, Content-Type, Origin, Authorization, Accept, Client-Security-Token, Accept-Encoding
Access-Control-Allow-Origin: http://www.bs-wutow.de
Access-Control-Allow-Origin: http://www.bs-frielingsdorf.de
Set-Cookie: PHPSESSID=7nku29q2knnm7ft986tapkjb10; path=/; secure; HttpOnly;Secure;HttpOnly
Access-Control-Allow-Origin: http://www.bs-fischer.eu
Access-Control-Allow-Origin: http://www.bs-hoffmann.de
Transfer-Encoding: chunked
Access-Control-Allow-Origin: http://www.bs-sandmannsatrovic.de
Vary: Accept-Encoding
Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT
Access-Control-Allow-Origin: http://www.bs-klinz.de
Access-Control-Allow-Origin: http://www.bs-moenke.de
Access-Control-Allow-Origin: http://www.bs-krohn.de
HTTP/1.1 200 OK