content-type: |
text/html; charset=utf-8 |
x-amzn-trace-id: |
Root=1-66fb4292-317269f71acce1f571abbab3 |
x-amzn-requestid: |
096dc032-e113-48b4-ae23-f8434f1e1cb2 |
etag: |
W/"eded-aAi/1cMnBiRcLYRZK2NpAwtoM4M" |
x-akamai-transformed: |
9 - 0 pmb=mTOE,2mRUM,3 |
cache-control: |
max-age=1444 |
date: |
Tue, 01 Oct 2024 00:41:15 GMT |
transfer-encoding: |
chunked |
connection: |
close, Transfer-Encoding |
set-cookie: |
AKA_A2=A; expires=Tue, 01-Oct-2024 01:41:15 GMT; path=/; domain=finnair.com; secure; HttpOnly,akaas_AB-Test=2147483647~rv=15~id=30f7748c9917d31d96e8560483d7be08~rn=Segment%200; path=/; Expires=Tue, 19 Jan 2038 03:14:07 GMT; Secure; SameSite=None,_abck=A4F9810FB81CC70C752953AF476B4E9A~-1~YAAQjlozuBBRWjKSAQAAgjKGRQyNfZ4PSjipiaAtg6M4zg/lxUkEWSyrd24de4cs+O87cEzzLA9x5hy+R95RNCFPHSTEsBVDqQLAWqFY9TtTUOeIiR85zP+lLic4NGZRy7wQDhOMYpt2je6+pE+wI4ekatdX8asIG8fvk6Z1R1RHMaJcbEXMvUi9kpAJ820p3k//UbvrqD/ynJF4BbCzFKZ9MdXFaWT2PSTRfpE4IRBSNhcFp7V3JU6BGoqjJytCKS7RW6y15InWn3X0A0M6ZUkk9u6p8Mj6zYVog0r/VUZrP2p1AtLXkBtqwG+D/o6CoXba5oYHlnTMGMg6FOejpfvNLolW875YelKhyfTYkhldrrAtrIk8LnvZNNStiXIdafeoKplAufFVEVHYMT1xkYBrkxCoOqRafK1hdm2j~-1~-1~-1; Domain=.finnair.com; Path=/; Expires=Wed, 01 Oct 2025 00:41:15 GMT; Max-Age=31536000; Secure,bm_sz=AD8A8CECC5FAAF1A6A972F93ACF848E4~YAAQjlozuBFRWjKSAQAAgjKGRRlDnI2ge9B6mPjBPlQWst8lSNjzw/Oxxc+6BqJKkR0f69UmjP/LWYNe+kZchzAwCvS5xRw+K6hxkF702O4cnaGIQl268kFKlkvghmBtTH5mTNNnOmDiLAzPVelA/RURPWL5ZkDgCBFF7rB4lBUkvMsdwzJ+4QVCx7WdLCTC91xYOu6IK2e2fGf4hoWmRHAFjRvEhLF9bH0T+Jg/Li5OvgA/mvdosk1IN1B5JkqtEp0qu0Qoncfb0PqD+ZmUvqZYZT0LLvSoklI5oEZyP9suXBfoBPUVDlC3E4qotWkrHdpy0PYR4qhiaG8hMuoAdLQK5tftZyeAUKijPuhNzKmOYPCtJvt65Gyt1U+VfzVyIA==~4470329~3421508; Domain=.finnair.com; Path=/; Expires=Tue, 01 Oct 2024 04:41:15 GMT; Max-Age=14400 |
link: |
<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Bold.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Medium.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Italic.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://cdn.finnair.com/fcom-ui-styles/prod/fonts/FinnairSans/FinnairSans-Regular.woff2>;rel="preload";as="font";type="font/woff2";crossorigin, <https://cdn.finnair.com>;rel="preconnect" |
content-security-policy: |
default-src 'self' https://cdn.finnair.com https://pay.finnair.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.finnair.com *.googletagmanager.com https://tagmanager.google.com *.google-analytics.com https://maps.googleapis.com https://googleads.g.doubleclick.net https://www.google.com https://www.googleadservices.com https://bat.bing.com https://*.akamaihd.net https://*.go-mpulse.net https://*.quantummetric.com https://*.salesforceliveagent.com https://*.force.com https://*.salesforce.com https://connect.facebook.net https://www.dwin1.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://*.travelaudience.com https://*.reactandshare.com https://snap.licdn.com https://finnair.my.salesforce-sites.com https://*.hotjar.com https://*.ads-twitter.com https://product-router.cartrawler.com; style-src 'self' 'unsafe-inline' *.finnair.com https://*.force.com https://*.salesforce.com https://*.googletagmanager.com https://tagmanager.google.com https://fonts.googleapis.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://*.reactandshare.com https://finnair.my.salesforce-sites.com; img-src 'self' data: *.finnair.com *.google-analytics.com https://*.ytimg.com https://*.akamaihd.net https://*.akstat.io https://www.googletagmanager.com https://maps.googleapis.com https://*.gstatic.com https://*.google.com https://www.google.fi https://www.google.se https://www.google.co.uk https://www.google.de https://www.google.es https://www.google.it *.doubleclick.net https://www.googleadservices.com https://*.analytics.google.com https://www.facebook.com https://www.awin1.com https://www.dwin1.com https://cdn.smartvel.com https://bat.bing.com https://finnair.3dseatmapvr.com https://*.travelaudience.com https://*.reactandshare.com https://px.ads.linkedin.com https://*.ads-twitter.com https://*.ads-api.twitter.com https://analytics.twitter.com https://t.co https://script.hotjar.com https://play-lh.googleusercontent.com https://ade.googlesyndication.com https://cms-scdn.airtime.geemedia.com; manifest-src 'self' https://cdn.finnair.com; font-src 'self' data: https://cdn.finnair.com https://maps.googleapis.com https://*.gstatic.com https://cdn.smartvel.com https://cdn-qa.smartvel.com https://*.reactandshare.com https://script.hotjar.com; connect-src 'self' *.finnair.com https://sentry.io https://*.akamaihd.net https://*.akstat.io https://c.go-mpulse.net https://*.force.com https://search-api.swiftype.com https://finnair-app.quantummetric.com *.google-analytics.com *.doubleclick.net https://*.analytics.google.com https://*.googletagmanager.com https://*.google.com https://www.google.fi https://www.google.se https://www.google.co.uk https://www.google.de https://www.google.es https://www.google.it https://www.facebook.com https://green.am.apps.avarko.com https://*.aurinkomatkat.fi https://api.smartvel.com https://cdn.smartvel.com https://finnair.3dseatmapvr.com https://finnair-app-search.ent.eu-central-1.aws.cloud.es.io https://*.reactandshare.com https://cdn.linkedin.oribi.io https://px.ads.linkedin.com https://*.ads-twitter.com https://*.ads-api.twitter.com https://*.analytics.twitter.com https://finnair.my.salesforce-sites.com https://*.hotjar.com:* https://*.hotjar.io wss://*.hotjar.com https://*.safetravel.amadeus.com https://wasm.oho.prd.icm.aero; child-src 'self' https://paygw.finnair.com https://auth.finnair.com https://www.youtube.com https://api.finnair.com https://www.facebook.com https://staticxx.facebook.com blob:; frame-src 'self' https://*.force.com https://*.salesforce.com https://paygw.finnair.com https://auth.finnair.com https://www.youtube.com https://api.finnair.com https://api-dev.finnair.com https://api-test.finnair.com https://api-preprod.finnair.com https://3530909.fls.doubleclick.net https://www.googletagmanager.com https://bid.g.doubleclick.net https://td.doubleclick.net https://finnair.eu.qualtrics.com https://www.facebook.com https://*.points.com https://13389050.fls.doubleclick.net https://vars.hotjar.com https://product-router.cartrawler.com; worker-src 'self' https://finnair.3dseatmapvr.com blob:; sandbox allow-popups allow-forms allow-scripts allow-same-origin allow-modals allow-popups-to-escape-sandbox allow-top-navigation allow-downloads; frame-ancestors 'self'; object-src 'none'; media-src https://finnair.3dseatmapvr.com; |
x-xss-protection: |
1; mode=block |
x-content-type-options: |
nosniff |
x-frame-options: |
SAMEORIGIN |
strict-transport-security: |
max-age=31536000 |
server-timing: |
ak_p; desc="1727743275623_3090373262_144878553_60_13373_5_7_-";dur=1 |