content-type: |
text/html; charset=utf-8 |
x-amzn-trace-id: |
Root=1-66fb43b3-39d14ed77fab85d23cf099f2 |
x-amzn-requestid: |
d456fc99-edad-4506-881d-8b317d418db5 |
etag: |
W/"eded-H5vpU9G9pUsy6RbIpqatm1FDa8k" |
x-akamai-transformed: |
9 - 0 pmb=mTOE,2mRUM,3 |
cache-control: |
max-age=1389 |
date: |
Tue, 01 Oct 2024 00:41:15 GMT |
transfer-encoding: |
chunked |
connection: |
close, Transfer-Encoding |
set-cookie: |
AKA_A2=A; expires=Tue, 01-Oct-2024 01:41:15 GMT; path=/; domain=finnair.com; secure; HttpOnly,akaas_AB-Test=2147483647~rv=21~id=fc139215637bea6715b11704c8688f2f~rn=Segment%201; path=/; Expires=Tue, 19 Jan 2038 03:14:07 GMT; Secure; SameSite=None,_abck=400424F536B332E2D542B49F629F2BC6~-1~YAAQjlozuAhRWjKSAQAAbzGGRQyAKGHt9WvejI3AZGjEOQWyVjAZlmNH/KODescJjU1ZvgL0zLWHouoDa4Tr+ZLGl2dRfHI9x15xtuYXUWkLw0V67NSOSraIFg+Fbw2swyXYPNErALiP9vVqgN005Aaq80AiSW86RIyZ1YIl5W7xEmwMcdVgXbfaXDIKWc/TMHEaf9MAZyHfBQZl0FK5oYfTQ7g0Go0pmy1fGR6oIz/MdxpaDq1v+ePp4koiTYW6EjCCNXZ8IoEpv0w+2Mc3VcJjYXYgYeWqy3mSJ0IQ3n1034lAPttAjGAemwgZo79Q0AfbURd2eSZ33p3H0THs4Pi3HRFI4xtfdlc3qcX3ngQxTkpCwM29zasIk8v1jSJwBJSgzhFDqAcTpCuQJ+7bGwyoz97CKkOkMTmyc7Xi~-1~-1~-1; Domain=.finnair.com; Path=/; Expires=Wed, 01 Oct 2025 00:41:15 GMT; Max-Age=31536000; Secure,bm_sz=265F528EDB3B204F01C906745C54F953~YAAQjlozuAlRWjKSAQAAbzGGRRmAcD/hV+nSbmWzg71MfNS1Cv2sGumQ/dOJPTsBWTNzHRdvbInoKIWcliL8rBg/aMgQ0A07ep1PAZuOOXJODIk8gIMPnfbwSL+zFU2AZ39T/lQ0LCFRyLRRtE2SGGI8USfrVBlBHiE4AjX/IaNXkZOdXswPkPPzQ1B8TdPuTh+/XjqWcYtREp2Pejjgk42lnbYBdwY3Tqep3fqSCMQ9cUFpfw2+i9BV/uWV84gTHFXRfmyNzubTM9jiZhwcGyWVKTHEbxhcBFjG12VYYJ3ucYmaiOQKKQ8sA0QoA6HJCrqa/JZI2yr5COzyVsIt4b+Jwtp0JbHmRaU2mx9u0ooUJ8vOF/Gyo2w7Uv3Nt+lRGA==~4470329~3421508; Domain=.finnair.com; Path=/; Expires=Tue, 01 Oct 2024 04:41:15 GMT; Max-Age=14400 |
link: |
<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Bold.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Medium.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Italic.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Regular.woff2>;rel="preload";as="font";type="font/woff2";crossorigin, <https://cdn.finnair.com>;rel="preconnect" |
content-security-policy: |
default-src 'self' https://cdn.finnair.com https://pay.finnair.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.finnair.com *.googletagmanager.com https://tagmanager.google.com *.google-analytics.com https://maps.googleapis.com https://googleads.g.doubleclick.net https://www.google.com https://www.googleadservices.com https://bat.bing.com https://*.akamaihd.net https://*.go-mpulse.net https://*.quantummetric.com https://*.salesforceliveagent.com https://*.force.com https://*.salesforce.com https://connect.facebook.net https://www.dwin1.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://*.travelaudience.com https://*.reactandshare.com https://snap.licdn.com https://finnair.my.salesforce-sites.com https://*.hotjar.com https://*.ads-twitter.com https://product-router.cartrawler.com; style-src 'self' 'unsafe-inline' *.finnair.com https://*.force.com https://*.salesforce.com https://*.googletagmanager.com https://tagmanager.google.com https://fonts.googleapis.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://*.reactandshare.com https://finnair.my.salesforce-sites.com; img-src 'self' data: *.finnair.com *.google-analytics.com https://*.ytimg.com https://*.akamaihd.net https://*.akstat.io https://www.googletagmanager.com https://maps.googleapis.com https://*.gstatic.com https://*.google.com https://www.google.fi https://www.google.se https://www.google.co.uk https://www.google.de https://www.google.es https://www.google.it *.doubleclick.net https://www.googleadservices.com https://*.analytics.google.com https://www.facebook.com https://www.awin1.com https://www.dwin1.com https://cdn.smartvel.com https://bat.bing.com https://finnair.3dseatmapvr.com https://*.travelaudience.com https://*.reactandshare.com https://px.ads.linkedin.com https://*.ads-twitter.com https://*.ads-api.twitter.com https://analytics.twitter.com https://t.co https://script.hotjar.com https://play-lh.googleusercontent.com https://ade.googlesyndication.com https://cms-scdn.airtime.geemedia.com; manifest-src 'self' https://cdn.finnair.com; font-src 'self' data: https://cdn.finnair.com https://maps.googleapis.com https://*.gstatic.com https://cdn.smartvel.com https://cdn-qa.smartvel.com https://*.reactandshare.com https://script.hotjar.com; connect-src 'self' *.finnair.com https://sentry.io https://*.akamaihd.net https://*.akstat.io https://c.go-mpulse.net https://*.force.com https://search-api.swiftype.com https://finnair-app.quantummetric.com *.google-analytics.com *.doubleclick.net https://*.analytics.google.com https://*.googletagmanager.com https://*.google.com https://www.google.fi https://www.google.se https://www.google.co.uk https://www.google.de https://www.google.es https://www.google.it https://www.facebook.com https://green.am.apps.avarko.com https://*.aurinkomatkat.fi https://api.smartvel.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://finnair-app-search.ent.eu-central-1.aws.cloud.es.io https://*.reactandshare.com https://cdn.linkedin.oribi.io https://px.ads.linkedin.com https://*.ads-twitter.com https://*.ads-api.twitter.com https://*.analytics.twitter.com https://finnair.my.salesforce-sites.com https://*.hotjar.com:* https://*.hotjar.io wss://*.hotjar.com https://*.safetravel.amadeus.com https://wasm.oho.prd.icm.aero; child-src 'self' https://paygw.finnair.com https://auth.finnair.com https://www.youtube.com https://api.finnair.com https://www.facebook.com https://staticxx.facebook.com blob:; frame-src 'self' https://*.force.com https://*.salesforce.com https://paygw.finnair.com https://auth.finnair.com https://www.youtube.com https://api.finnair.com https://api-dev.finnair.com https://api-test.finnair.com https://api-preprod.finnair.com https://3530909.fls.doubleclick.net https://www.googletagmanager.com https://bid.g.doubleclick.net https://td.doubleclick.net https://finnair.eu.qualtrics.com https://www.facebook.com https://*.points.com https://13389050.fls.doubleclick.net https://vars.hotjar.com https://product-router.cartrawler.com; worker-src 'self' https://finnair.3dseatmapvr.com blob:; sandbox allow-popups allow-forms allow-scripts allow-same-origin allow-modals allow-popups-to-escape-sandbox allow-top-navigation allow-downloads; frame-ancestors 'self'; object-src 'none'; media-src https://finnair.3dseatmapvr.com; |
x-xss-protection: |
1; mode=block |
x-content-type-options: |
nosniff |
x-frame-options: |
SAMEORIGIN |
strict-transport-security: |
max-age=31536000 |
server-timing: |
ak_p; desc="1727743275327_3090373262_144878528_60_13089_5_11_-";dur=1 |