HTTP/1.1 301 Moved Permanently
Date: Wed, 23 Aug 2023 13:15:11 GMT
Last-Modified: Wed, 23 Aug 2023 13:15:11 GMT
Accept-Ranges: none
Connection: close
Content-type: text/html
Location: https://hrportal.ehr.com/manulife/EN
HTTP/1.1 302 Found
Date: Wed, 23 Aug 2023 13:15:11 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 181
Connection: keep-alive
Set-Cookie: ApplicationGatewayAffinityCORS=5e502b80bd5caea6cce82a7f521aaf4e; Path=/; SameSite=None; Secure
Set-Cookie: ApplicationGatewayAffinity=5e502b80bd5caea6cce82a7f521aaf4e; Path=/
Cache-Control: no-cache
Pragma: no-cache
Expires: -1
Location: https://hrportal.ehr.com/manulife/qa3?returnurl=%2fmanulife%2fEN
Set-Cookie: dnn_IsMobile=False; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: language=en-US; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: .ASPXANONYMOUS=8AX6tYqk8dlrGkIEMS4N8W3M0M33dQNN6NylCJfueA7kCqfWcdHPRDcp4zXKqzY0yh8asXCYyvoM9ZcBWmbkUE_NGQtoyEHg6XdUDRaiJpy7Lih3t4xeu70NU9Ekv0ntVFElmq24TMA6B8htJRck9g2; expires=Tue, 31-Oct-2023 23:55:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics_VisitorId=2a8637b3-8b3b-4b7d-addf-53da951402d6; expires=Fri, 22-Sep-2023 13:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics=SessionId=f7b130e4-a639-4560-9239-20df538aa089&TabId=54852&ContentItemId=-1; expires=Wed, 23-Aug-2023 14:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
Content-Security-Policy: default-src 'self' https: https://ajax.googleapis.com https://cdn.jsdelivr.net https://dnnapi.com https://cdnjs.cloudflare.com; font-src * data:; connect-src 'self' https: https://wtwdevcbot-bot.azurewebsites.net wss://directline.botframework.com; script-src 'self' https: 'unsafe-inline' 'unsafe-eval' blob:; style-src * 'unsafe-inline' 'unsafe-eval' blob:; media-src 'self' https: 'unsafe-inline' 'unsafe-eval'; img-src 'self' https: 'unsafe-inline' 'unsafe-eval' data: blob:
Cross-Origin-Opener-Policy: same-origin
Permissions-Policy: accelerometer=(),camera=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),payment=(),usb=()
Referrer-Policy: strict-origin-when-cross-origin
X-Content-Type-Options: nosniff
HTTP/1.1 302 Found
Date: Wed, 23 Aug 2023 13:15:11 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 290
Connection: keep-alive
Set-Cookie: ApplicationGatewayAffinityCORS=c4bb9b135be4bc9f4607fb92df858009; Path=/; SameSite=None; Secure
Set-Cookie: ApplicationGatewayAffinity=c4bb9b135be4bc9f4607fb92df858009; Path=/
Cache-Control: no-cache
Pragma: no-cache
Expires: -1
Location: https://hrportal.ehr.com/manulife/desktopmodules/portal/api/saml/sendauthnrequest/?target=ManulifeSelfService-ManulifeEmbarkLite&relaystate=%2fEN&rnd=650560202845633
Set-Cookie: dnn_IsMobile=False; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: language=en-US; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: .ASPXANONYMOUS=7z2tlTC2fzvAyRP2WwRAo9gfDUPweI-PzSCgvu6AIEhwgAkbybrFpCE0E12q7HAGTy53GwHlbT1v9oP7CHmPIprTjMNZB1wToe79OotVj7oxYctrHioeU5pz9o7kUITzFU8wyK5q0jwkVXaptz9hPA2; expires=Tue, 31-Oct-2023 23:55:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics_VisitorId=d3502d03-93c0-4ec2-9752-0bc798e1dcc1; expires=Fri, 22-Sep-2023 13:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics=SessionId=168d7787-4910-4dbc-b22b-b6780c0f8b6e&TabId=54822&ContentItemId=-1; expires=Wed, 23-Aug-2023 14:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: dnn_IsMobile=False; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: language=en-US; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: .ASPXANONYMOUS=7z2tlTC2fzvAyRP2WwRAo9gfDUPweI-PzSCgvu6AIEhwgAkbybrFpCE0E12q7HAGTy53GwHlbT1v9oP7CHmPIprTjMNZB1wToe79OotVj7oxYctrHioeU5pz9o7kUITzFU8wyK5q0jwkVXaptz9hPA2; expires=Tue, 31-Oct-2023 23:55:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics_VisitorId=d3502d03-93c0-4ec2-9752-0bc798e1dcc1; expires=Fri, 22-Sep-2023 13:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics=SessionId=168d7787-4910-4dbc-b22b-b6780c0f8b6e&TabId=54822&ContentItemId=-1; expires=Wed, 23-Aug-2023 14:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: ASP.NET_SessionId=o3npcabqjs3eomnzvqxl3mlb; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: dnn_IsMobile=False; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: language=en-US; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: .ASPXANONYMOUS=7z2tlTC2fzvAyRP2WwRAo9gfDUPweI-PzSCgvu6AIEhwgAkbybrFpCE0E12q7HAGTy53GwHlbT1v9oP7CHmPIprTjMNZB1wToe79OotVj7oxYctrHioeU5pz9o7kUITzFU8wyK5q0jwkVXaptz9hPA2; expires=Tue, 31-Oct-2023 23:55:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics_VisitorId=d3502d03-93c0-4ec2-9752-0bc798e1dcc1; expires=Fri, 22-Sep-2023 13:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: Analytics=SessionId=168d7787-4910-4dbc-b22b-b6780c0f8b6e&TabId=54822&ContentItemId=-1; expires=Wed, 23-Aug-2023 14:15:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: ASP.NET_SessionId=o3npcabqjs3eomnzvqxl3mlb; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: authentication=HRT.Portal.DNNModules.HRPortalAuth; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: strict-origin-when-cross-origin
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
Content-Security-Policy: default-src 'self' https: https://ajax.googleapis.com https://cdn.jsdelivr.net https://dnnapi.com https://cdnjs.cloudflare.com; font-src * data:; connect-src 'self' https: https://wtwdevcbot-bot.azurewebsites.net wss://directline.botframework.com; script-src 'self' https: 'unsafe-inline' 'unsafe-eval' blob:; style-src * 'unsafe-inline' 'unsafe-eval' blob:; media-src 'self' https: 'unsafe-inline' 'unsafe-eval'; img-src 'self' https: 'unsafe-inline' 'unsafe-eval' data: blob:
Cross-Origin-Opener-Policy: same-origin
Permissions-Policy: accelerometer=(),camera=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),payment=(),usb=()
X-Content-Type-Options: nosniff
HTTP/1.1 200 OK
Date: Wed, 23 Aug 2023 13:15:11 GMT
Content-Type: text/html
Content-Length: 6089
Connection: keep-alive
Set-Cookie: ApplicationGatewayAffinityCORS=c08af83484ddf28d10fae15c265cbaf1; Path=/; SameSite=None; Secure
Set-Cookie: ApplicationGatewayAffinity=c08af83484ddf28d10fae15c265cbaf1; Path=/
Cache-Control: no-cache
Pragma: no-cache
Expires: -1
Set-Cookie: dnn_IsMobile=False; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: .ASPXANONYMOUS=COE1yIDcoWiAxWbDRkANbziQSif7ufZ7wVDDUh7UTtapj-8Ioe5smEpGxt-kGXI0mVy0tR-UQ6IFGsGsd9UOSeWC_PiUjltk9TKtQb_rwIqefQe51lmXMaXMlpBw-gHiPMaSLD8dBpTld2nwkP-MhA2; expires=Tue, 31-Oct-2023 23:55:11 GMT; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: language=en-US; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Set-Cookie: 201_dplk=/EN; path=/; secure; HttpOnly; SameSite=Lax; SameSite=Lax;secure=true
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: strict-origin-when-cross-origin
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
Content-Security-Policy: default-src 'self' https: https://ajax.googleapis.com https://cdn.jsdelivr.net https://dnnapi.com https://cdnjs.cloudflare.com; font-src * data:; connect-src 'self' https: https://wtwdevcbot-bot.azurewebsites.net wss://directline.botframework.com; script-src 'self' https: 'unsafe-inline' 'unsafe-eval' blob:; style-src * 'unsafe-inline' 'unsafe-eval' blob:; media-src 'self' https: 'unsafe-inline' 'unsafe-eval'; img-src 'self' https: 'unsafe-inline' 'unsafe-eval' data: blob:
Cross-Origin-Opener-Policy: same-origin
Permissions-Policy: accelerometer=(),camera=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),payment=(),usb=()
X-Content-Type-Options: nosniff
|