date: |
Wed, 02 Oct 2024 20:42:57 GMT |
content-type: |
text/html; charset=utf-8 |
content-length: |
117957 |
connection: |
close |
access-control-allow-headers: |
Content-Type |
access-control-allow-methods: |
GET, OPTIONS |
access-control-expose-headers: |
Request-Context |
cache-control: |
no-cache |
expires: |
-1 |
pragma: |
no-cache |
strict-transport-security: |
max-age=63072000 |
x-frame-options: |
SAMEORIGIN |
content-security-policy: |
default-src 'self'; script-src *.googleapis.com *.gstatic.com www.google.com apis.google.com connect.facebook.net ajax.aspnetcdn.com platform.twitter.com https://syndication.twitter.com/ https://s.ytimg.com https://publish.twitter.com *.twimg.com platform.linkedin.com http://platform.stumbleupon.com/1/widgets.js https://www.youtube.com/iframe_api https://dec.azureedge.net/ munchkin.marketo.net *.eloqua.com js.hs-scripts.com js.hs-analytics.net *.en25.com code.jquery.com https://www.googletagmanager.com https://www.tagmanager.google.com https://player.vimeo.com/video/334043103 https://offers.cbhs.com.au/ https://*.abtasty.com/ https://ad.doubleclick.net/ https://secure.adnxs.com https://acdn.adnxs.com/dmp/up/pixie.js https://www.googletagservices.com/ https://websites.cdn.getfeedback.com/embed/sYWuqaB7LH/gf.js https://www.getfeedback.com/e/R3BSQ3B0 https://cdn.botframework.com/botframework-webchat/4.13.0/webchat.js https://chatbot.cbhs.com.au/api/directlinetoken https://snap.licdn.com/li.lms-analytics/insight.min.js https://pagead2.googlesyndication.com/pagead/js/r20220425/r20110914/elements/html/omrhp.js https://px.ads.linkedin.com/collect https://sslwidget.criteo.com https://gum.criteo.com *.callrail.com https://pg.feroot.com/v1/bundle/27b8acf8-cfb8-4bae-ae68-daefc4dc31ba https://cbhs-carey.azurewebsites.net/api/directlinetoken https://corp-carey.azurewebsites.net/api/directlinetoken http://*.adform.net/ https://*.zemanta.com/zcpt.js https://*.quantserve.com/quant.js https://*.clarity.ms/ https://cgrpabtastyuatstorage.z8.web.core.windows.net/ https://cgrpabtastystorage.z8.web.core.windows.net/ *.quantcount.com *.quantserve.com 'self' *.google-analytics.com https://cdn.insight.sitefinity.com https://dec.azureedge.net cdn.ampproject.org web-chat.nativechat.com 'unsafe-inline' 'unsafe-eval'; style-src *.googleapis.com *.gstatic.com netdna.bootstrapcdn.com kendo.cdn.telerik.com www.google.com platform.twitter.com/css/ *.twimg.com https://www.googletagmanager.com https://offers.cbhs.com.au/ https://*.abtasty.com/ 'self' https://cdn.insight.sitefinity.com https://dec.azureedge.net web-chat.nativechat.com 'unsafe-inline'; img-src *.gstatic.com *.googleapis.com platform.tumblr.com web.facebook.com www.facebook.com www.redditstatic.com www.linkedin.com https://syndication.twitter.com https://static.licdn.com/scds/common/u/images/apps/connect/sprites/sprite_connect_v14.png pbs.twimg.com platform.twitter.com/css/ *.twimg.com data: blob: https://*.insight.sitefinity.com https://*.dec.sitefinity.com *.eloqua.com track.hubspot.com https://*.abtasty.com/ https://www.google.com/ads/ga-audiences https://www.google.com.au/ads/ga-audiences https://*.doubleclick.net https://px.ads.linkedin.com/collect https://ib.adnxs.com/ https://visitor.omnitagjs.com/ https://exchange.mediavine.com/ https://sync-t1.taboola.com/ https://sync-criteo.ads.yieldmo.com/ https://criteo-sync.teads.tv/ https://sync.outbrain.com/ ad.360yield.com ad.yieldlab.net ade.clmbtech.com adgen.socdm.com ads.stickyadstv.com adx.dable.io c.bing.com contextual.media.net cs.adingo.jp *.criteo.com eb2.3lift.com idsync.rlcdn.com ih.adscale.de match.sharethrough.com pixel.rubiconproject.com r.casalemedia.com rtb-csync.smartadserver s.ad.smaato simage2.pubmatic.com sync.aralego.com tg.socdm.com ups.analytics.yahoo x.bidswitch.net p.adsymptotic.com s.ad.smaato.net rtb-csync.smartadserver.com ups.analytics.yahoo.com tags.bluekai.com beacon.krxd.net cdn.aralego.net cotads.adscale.de usersync.octillion.tv 'self' *.google-analytics.com https://cdn.insight.sitefinity.com https://dec.azureedge.net web-chat.nativechat.com; font-src 'self' fonts.gstatic.com kendo.cdn.telerik.com netdna.bootstrapcdn.com data: https://*.abtasty.com/; frame-src https://www.nab.com.au https://www.healthshare.com.au https://test.salesforce.com https://www.youtube.com https://cbhs--sit.my.salesforce.com https://www.whitecoat.com.au https://www.ahsa.com.au https://cbhs--uat.my.salesforce.com https://cbhs--uat.cs137.my.salesforce.com https://webto.salesforce.com/servlet/servlet.WebToCase?encoding=UTF-8 https://webto.salesforce.com/servlet/servlet.WebToLead?encoding=UTF-8 https://www.googletagmanager.com https://www.tagmanager.google.com https://player.vimeo.com https://offers.cbhs.com.au/ https://members.cbhs.com.au/ https://uat.cbhs.com.au/ https://*.doubleclick.net/ https://www.getfeedback.com/* https://www.getfeedback.com/e/* https://www.getfeedback.com/e/bHmYasx3?gf_embed_origin=https%3A%2F%2Fdfs4.cbhs.com.au&gf_multichannel_embed=true&webpage_url=https%3A%2F%2Fdfs4.cbhs.com.au%2Fproduct-results https://www.getfeedback.com/e/R3BSQ3B0 https://*.abtasty.com/ https://chatbot.cbhs.com.au/api/directlinetoken https://gum.criteo.com https://cbhs-carey.azurewebsites.net/api/directlinetoken https://corp-carey.azurewebsites.net/api/directlinetoken 'self' web-chat.nativechat.com; connect-src accounts.google.com https://analytics.google.com *.mktoresp.com https://health.cbhs.website:80/I3Root/Server1/websvcs/serverConfiguration https://health.cbhs.website:80/I3Root/Server2/websvcs/serverConfiguration https://ictest.cbhs.com.au/CBHS-ICTEST/ https://www.googletagmanager.com https://offers.cbhs.com.au/77e33a2c4e0120e82889698a199cd1bc.js https://*.abtasty.com/ https://googleads4.g.doubleclick.net/ https://*.doubleclick.net https://www.google-analytics.com https://cdn.botframework.com/botframework-webchat/4.13.0/webchat.js *.botframework.com/v3/directline/conversations* wss://directline.botframework.com https://directline.botframework.com https://chatbot.cbhs.com.au https://chatbot.cbhscorporatehealth.com.au https://dis.criteo.com/ https://visitor-fra02.omnitagjs.com/ https://gum.criteo.com/ https://pagead2.googlesyndication.com/pagead/js/r20220728/r20110914/elements/html/omrhp.js https://*.callrail.com https://pageguard.feroot.com/v1/27b8acf8-cfb8-4bae-ae68-daefc4dc31ba/collect https://cbhs-carey.azurewebsites.net https://corp-carey.azurewebsites.net https://*.clarity.ms/ 'self' *.google-analytics.com https://*.insight.sitefinity.com https://*.dec.sitefinity.com; media-src 'self' data: blob:; child-src https://platform.twitter.com/ https://syndication.twitter.com/ https://www.youtube.com/ https://player.vimeo.com/ https://w.soundcloud.com/ apis.google.com accounts.google.com staticxx.facebook.com www.facebook.com web.facebook.com badge.stumbleupon.com https://www.cbhs.com.au/ https://*.abtasty.com/ https://chatbot.cbhs.com.au/api/directlinetoken https://cbhs-carey.azurewebsites.net/api/directlinetoken https://corp-carey.azurewebsites.net/api/directlinetoken 'self' web-chat.nativechat.com |
referrer-policy: |
no-referrer-when-downgrade |
x-content-type-options: |
nosniff |
x-xss-protection: |
1; mode=block |
request-context: |
appId=cid-v1:4715f560-6129-4073-bd08-a6b3569f0220 |
set-cookie: |
ApplicationGatewayAffinityCORS=a5eb318e336ee6e4b7afceac7eb9bb49; Path=/; SameSite=None; Secure; httponly,ApplicationGatewayAffinity=a5eb318e336ee6e4b7afceac7eb9bb49; Path=/; secure; httponly,ASP.NET_SessionId=ki1gr0m45q4ugz5ndzaiuj3j; path=/; secure; HttpOnly; SameSite=Lax,ARRAffinity=71c5ecfca949e38fa6d8b6899df69a8bc1065f71ea6211c776e43d3b7b216b7d;Path=/;HttpOnly;Secure;Domain=cgrp-webapp.azurewebsites.net,ARRAffinitySameSite=71c5ecfca949e38fa6d8b6899df69a8bc1065f71ea6211c776e43d3b7b216b7d;Path=/;HttpOnly;SameSite=None;Secure;Domain=cgrp-webapp.azurewebsites.net,RS=V_433096354; Path=/; httponly;,TS01b2a25a=0105b6b7b664d1a7ff7f6e9e9482536f254623e6055bd51fcc03843220177b9fcb3dff6bd4ad47b8f3da2d0496e5ecd526ae47f326; Path=/; Secure; HTTPOnly,TS0163a66c=0105b6b7b664d1a7ff7f6e9e9482536f254623e6055bd51fcc03843220177b9fcb3dff6bd4ad47b8f3da2d0496e5ecd526ae47f326; path=/; domain=cgrp-webapp.azurewebsites.net; HTTPonly; Secure |
vary: |
Accept-Encoding |