content-type: |
text/html; charset=utf-8 |
x-amzn-trace-id: |
Root=1-66fb43b3-39d14ed77fab85d23cf099f2 |
x-amzn-requestid: |
d456fc99-edad-4506-881d-8b317d418db5 |
etag: |
W/"eded-H5vpU9G9pUsy6RbIpqatm1FDa8k" |
x-akamai-transformed: |
9 9983 0 pmb=mTOE,3mRUM,3 |
cache-control: |
max-age=1389 |
date: |
Tue, 01 Oct 2024 00:41:15 GMT |
transfer-encoding: |
chunked |
connection: |
close, Transfer-Encoding |
set-cookie: |
AKA_A2=A; expires=Tue, 01-Oct-2024 01:41:15 GMT; path=/; domain=finnair.com; secure; HttpOnly,akaas_AB-Test=2147483647~rv=38~id=0caa8545f1f8206e36c84dfb231d6fc3~rn=Segment%201; path=/; Expires=Tue, 19 Jan 2038 03:14:07 GMT; Secure; SameSite=None,_abck=B29B45217C828E0229F80266C393D57E~-1~YAAQjlozuAZRWjKSAQAACDGGRQwVCHpAiATW6EYaIPOWgbLcGdNx/T/N+alYOeE3DtOp/u2shTxKiVnHzwpg127k+5dEHGS9siY0N3tuHMpJ4Hxi/oLskwfSQ6CJ6TiR9zVRpHubFQpzYzn4VZKJ0rEvBFxIdNDo7qcdoFLmtYS/ChLnkgBbhPCjG3Ck7GApBXMOfOLQuC2WU2JTqyrOSZ+B6YhyhcCdn1DaFqbllo41Y0OpMsItHZW5jm3OSSPs1yRvd/mPpCqsO8Fk2dvpwzLYBKuU0RQmIGDlVfteV28VevWiWmRKDKFmBSZl1w5v6m+Q9lumqtEUf+aYHoVSeJyYpfACFja7DvjadR/Jz1NKuVSaYRT8pAyYZmTlivT3Eo2RvZXrVVCTIqn8OVkr+2HGSBnhxY5zJMXC9+9b~-1~-1~-1; Domain=.finnair.com; Path=/; Expires=Wed, 01 Oct 2025 00:41:15 GMT; Max-Age=31536000; Secure,bm_sz=C151F08560E639578BDF030E52D23796~YAAQjlozuAdRWjKSAQAACDGGRRkIG1Z4ylV9YOa6g19nAbW6o3LSPR4VMwags/iIjGLTA3zri81Cnec1Mea4+LxWlEyX9ibljURUidpF38nHxV1KXCDbhrDx+XZAsT7PRP6k1hVcGZJkY+szqhUONaGW1xBzRIW+wVaKMQFNSFbkLyhDoLrjp96fWMGW3ndDAO83wTiE8qAvoJwF7eZbtHKegYXnDajYEH4DHFe1oA0RaYJn03sXx9zYWM0E6mFz00Uxd6Xl1D9fa3xgDmtH1Ca8BQx8gR+9yxkRbyDU9FqsAY2OoUPm/lQj3MpdBC9lyTg0ksMstBI2EDG3sIIxcsraaydo5Jblhx2Sg0xBvARMtYopcMZjFLIw7RytmXFQeg==~4470329~3421508; Domain=.finnair.com; Path=/; Expires=Tue, 01 Oct 2024 04:41:15 GMT; Max-Age=14400 |
link: |
<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Bold.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Medium.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Italic.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Regular.woff2>;rel="preload";as="font";type="font/woff2";crossorigin, <https://cdn.finnair.com>;rel="preconnect" |
content-security-policy: |
default-src 'self' https://cdn.finnair.com https://pay.finnair.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.finnair.com *.googletagmanager.com https://tagmanager.google.com *.google-analytics.com https://maps.googleapis.com https://googleads.g.doubleclick.net https://www.google.com https://www.googleadservices.com https://bat.bing.com https://*.akamaihd.net https://*.go-mpulse.net https://*.quantummetric.com https://*.salesforceliveagent.com https://*.force.com https://*.salesforce.com https://connect.facebook.net https://www.dwin1.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://*.travelaudience.com https://*.reactandshare.com https://snap.licdn.com https://finnair.my.salesforce-sites.com https://*.hotjar.com https://*.ads-twitter.com https://product-router.cartrawler.com; style-src 'self' 'unsafe-inline' *.finnair.com https://*.force.com https://*.salesforce.com https://*.googletagmanager.com https://tagmanager.google.com https://fonts.googleapis.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://*.reactandshare.com https://finnair.my.salesforce-sites.com; img-src 'self' data: *.finnair.com *.google-analytics.com https://*.ytimg.com https://*.akamaihd.net https://*.akstat.io https://www.googletagmanager.com https://maps.googleapis.com https://*.gstatic.com https://*.google.com https://www.google.fi https://www.google.se https://www.google.co.uk https://www.google.de https://www.google.es https://www.google.it *.doubleclick.net https://www.googleadservices.com https://*.analytics.google.com https://www.facebook.com https://www.awin1.com https://www.dwin1.com https://cdn.smartvel.com https://bat.bing.com https://finnair.3dseatmapvr.com https://*.travelaudience.com https://*.reactandshare.com https://px.ads.linkedin.com https://*.ads-twitter.com https://*.ads-api.twitter.com https://analytics.twitter.com https://t.co https://script.hotjar.com https://play-lh.googleusercontent.com https://ade.googlesyndication.com https://cms-scdn.airtime.geemedia.com; manifest-src 'self' https://cdn.finnair.com; font-src 'self' data: https://cdn.finnair.com https://maps.googleapis.com https://*.gstatic.com https://cdn.smartvel.com https://cdn-qa.smartvel.com https://*.reactandshare.com https://script.hotjar.com; connect-src 'self' *.finnair.com https://sentry.io https://*.akamaihd.net https://*.akstat.io https://c.go-mpulse.net https://*.force.com https://search-api.swiftype.com https://finnair-app.quantummetric.com *.google-analytics.com *.doubleclick.net https://*.analytics.google.com https://*.googletagmanager.com https://*.google.com https://www.google.fi https://www.google.se https://www.google.co.uk https://www.google.de https://www.google.es https://www.google.it https://www.facebook.com https://green.am.apps.avarko.com https://*.aurinkomatkat.fi https://api.smartvel.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://finnair-app-search.ent.eu-central-1.aws.cloud.es.io https://*.reactandshare.com https://cdn.linkedin.oribi.io https://px.ads.linkedin.com https://*.ads-twitter.com https://*.ads-api.twitter.com https://*.analytics.twitter.com https://finnair.my.salesforce-sites.com https://*.hotjar.com:* https://*.hotjar.io wss://*.hotjar.com https://*.safetravel.amadeus.com https://wasm.oho.prd.icm.aero; child-src 'self' https://paygw.finnair.com https://auth.finnair.com https://www.youtube.com https://api.finnair.com https://www.facebook.com https://staticxx.facebook.com blob:; frame-src 'self' https://*.force.com https://*.salesforce.com https://paygw.finnair.com https://auth.finnair.com https://www.youtube.com https://api.finnair.com https://api-dev.finnair.com https://api-test.finnair.com https://api-preprod.finnair.com https://3530909.fls.doubleclick.net https://www.googletagmanager.com https://bid.g.doubleclick.net https://td.doubleclick.net https://finnair.eu.qualtrics.com https://www.facebook.com https://*.points.com https://13389050.fls.doubleclick.net https://vars.hotjar.com https://product-router.cartrawler.com; worker-src 'self' https://finnair.3dseatmapvr.com blob:; sandbox allow-popups allow-forms allow-scripts allow-same-origin allow-modals allow-popups-to-escape-sandbox allow-top-navigation allow-downloads; frame-ancestors 'self'; object-src 'none'; media-src https://finnair.3dseatmapvr.com; |
x-xss-protection: |
1; mode=block |
x-content-type-options: |
nosniff |
x-frame-options: |
SAMEORIGIN |
strict-transport-security: |
max-age=31536000 |
server-timing: |
ak_p; desc="1727743275235_3090373262_144878519_813_13995_5_11_-";dur=1 |