HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 89
Content-Security-Policy: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
Content-Type: text/html; charset=utf-8
Date: Thu, 22 Dec 2022 18:44:30 GMT
Expires: 0
Location: https://www.lilly-patient.de/
Pragma: no-cache
Referrer-Policy: same-origin
Strict-Transport-Security: max-age=31536000; includeSubDomains
Surrogate-Control: no-store
Via: 1.1 spaces-router (e13668ca8eb7)
X-Content-Security-Policy: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Robots-Tag: noarchive
X-Webkit-Csp: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
X-Xss-Protection: 1; mode=block
HTTP/1.1 301 Moved Permanently
Cache-Control: public, no-cache, max-age=0
Content-Length: 43
Content-Security-Policy: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
Content-Type: text/html; charset=utf-8
Date: Thu, 22 Dec 2022 18:44:30 GMT
Expires: 0
Location: /de-de
Pragma: no-cache
Referrer-Policy: same-origin
Strict-Transport-Security: max-age=31536000; includeSubDomains
Surrogate-Control: no-store
Vary: Accept-Encoding
Via: 1.1 spaces-router (e13668ca8eb7)
X-Content-Security-Policy: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Robots-Tag: noarchive
X-Webkit-Csp: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
X-Xss-Protection: 1; mode=block
HTTP/1.1 200 OK
Accept-Ranges: none
Cache-Control: public, no-cache, max-age=0
Content-Length: 108621
Content-Security-Policy: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'nonce-6irDMO6x8EA3NP6T4nLeFA==' 'sha256-7HqB0lmRr04zvNLZRj5UWJdv60QQYlneg0hE52n1IAo=' 'sha256-lplCqCSf6qGRonK8DONsN0JjazBLKh/kcnu4X4K8oLI=' 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
Content-Type: text/html; charset=utf-8
Date: Thu, 22 Dec 2022 18:44:30 GMT
Etag: "1a84d-cNPbjzFjgvF+el7kPyaQMSTSWhg"
Expires: 0
Pragma: no-cache
Referrer-Policy: same-origin
Strict-Transport-Security: max-age=31536000; includeSubDomains
Surrogate-Control: no-store
Vary: Accept-Encoding
Via: 1.1 spaces-router (e13668ca8eb7)
X-Content-Security-Policy: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Robots-Tag: noarchive
X-Webkit-Csp: frame-ancestors 'self'; object-src 'none'; base-uri 'none'; script-src 'self' 'strict-dynamic' 'unsafe-eval' *.kaltura.com/ *.cassiecloud.com *.googletagmanager.com blob: https://google-analytics.com *.google-analytics.com https://lilly-customerconnect.secure.force.com *.salesforceliveagent.com *.lilly-patient.de; style-src 'self' 'unsafe-inline' *.cassiecloud.com https://cscript-cdn-use.lilly-patient.de *.lilly-patient.de
X-Xss-Protection: 1; mode=block
|