HTTP/1.1 301 Moved Permanently
Server: Varnish
Location: http://www.vancanada.ca/
Content-Type: text/html; charset=utf-8
Retry-After: 5
Content-Length: 412
Accept-Ranges: bytes
Date: Thu, 07 Oct 2021 02:08:39 GMT
X-Varnish: 368027983
Age: 0
Via: 1.1 varnish
Connection: close
HTTP/1.1 302 Found
Cache-Control: private
Content-Type: text/html; charset=utf-8
Location: https://www.vancanada.ca/default.aspx
Content-Security-Policy: default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com *.gstatic.com www.googletagmanager.com *.google-analytics.com platform.twitter.com *.googleadservices.com bid.g.doubleclick.net googleads.g.doubleclick.net analytics.twitter.com static.ads-twitter.com/ *.fullstory.com d6tizftlrpuof.cloudfront.net js-agent.newrelic.com bam.nr-data.net app.pendo.io data.product-ops.everyaction.com pendo-io-static.storage.googleapis.com cdn.pendo.io content.product-ops.everyaction.com f0f33f0a-dbb2-483b-7143-14e0ca966d58.storage.googleapis.com data.pendo.io pendo-static-5749633754857472.storage.googleapis.com js.verygoodvault.com media.twiliocdn.com; style-src 'self' 'unsafe-inline' *.googleapis.com *.google.com *.gstatic.com *.aptrinsic.com app.pendo.io data.product-ops.everyaction.com cdn.pendo.io content.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com; img-src 'self' data: images.thevan.us *.twimg.com www.google-analytics.com stats.g.doubleclick.net t.co www.google.com www.gstatic.com www.googletagmanager.com ssl.gstatic.com cdn.pendo.io content.product-ops.everyaction.com app.pendo.io data.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com data.pendo.io; connect-src 'self' accounts.ngpvan.com www.google-analytics.com *.google.com stats.g.doubleclick.net rs.fullstory.com app.pendo.io data.product-ops.everyaction.com data.pendo.io content.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com media.twiliocdn.com chunderw-vpc-gll.twilio.com wss://chunderw-vpc-gll.twilio.com eventgw.twilio.com wss://device.webrtc.bandwidth.com wss://www.vancanada.ca; font-src 'self' data: fonts.gstatic.com heapanalytics.com; object-src 'self'; media-src 'none'; frame-src 'self' *.securevan.com accounts.ngpvan.com bid.g.doubleclick.net js.verygoodvault.com app.pendo.io data.product-ops.everyaction.com player.vimeo.com;
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Date: Thu, 07 Oct 2021 02:08:40 GMT
Content-Length: 154
Set-Cookie: visid_incap_1228402=1lWIhM16QOqoW46AQMTQfKdWXmEAAAAAQUIPAAAAAADnuTsorSlxmk7L5bsIAyZZ; expires=Thu, 06 Oct 2022 08:01:02 GMT; HttpOnly; path=/; Domain=.vancanada.ca
Set-Cookie: nlbi_1228402=WtYLBAOCsnZapbmLxQFrNAAAAACgYAgCNr4ZxE0pcLTiA9oL; path=/; Domain=.vancanada.ca
Set-Cookie: incap_ses_702_1228402=6HFJabvue0iVSXzh1QG+CadWXmEAAAAAVPWPfBBE9EDh43jQ+5faSw==; path=/; Domain=.vancanada.ca
X-CDN: Imperva
X-Iinfo: 1004-7904660-7904665 NNNN CT(7 -1 0) RT(1633572519492 0) q(0 2 2 0) r(2 2) U11
HTTP/1.1 302 Found
Cache-Control: no-cache
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Location: /Login.aspx
Set-Cookie: ASP.NET_SessionId=sm3alodu0hifnndgl3z0nyer; path=/; secure; HttpOnly; SameSite=Lax
Set-Cookie: ReturnURLCookie=URL=%2Fdefault.aspx; path=/; secure; HttpOnly; SameSite=Lax
Content-Security-Policy: default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com *.gstatic.com www.googletagmanager.com *.google-analytics.com platform.twitter.com *.googleadservices.com bid.g.doubleclick.net googleads.g.doubleclick.net analytics.twitter.com static.ads-twitter.com/ *.fullstory.com d6tizftlrpuof.cloudfront.net js-agent.newrelic.com bam.nr-data.net app.pendo.io data.product-ops.everyaction.com pendo-io-static.storage.googleapis.com cdn.pendo.io content.product-ops.everyaction.com f0f33f0a-dbb2-483b-7143-14e0ca966d58.storage.googleapis.com data.pendo.io pendo-static-5749633754857472.storage.googleapis.com js.verygoodvault.com media.twiliocdn.com; style-src 'self' 'unsafe-inline' *.googleapis.com *.google.com *.gstatic.com *.aptrinsic.com app.pendo.io data.product-ops.everyaction.com cdn.pendo.io content.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com; img-src 'self' data: images.thevan.us *.twimg.com www.google-analytics.com stats.g.doubleclick.net t.co www.google.com www.gstatic.com www.googletagmanager.com ssl.gstatic.com cdn.pendo.io content.product-ops.everyaction.com app.pendo.io data.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com data.pendo.io; connect-src 'self' accounts.ngpvan.com www.google-analytics.com *.google.com stats.g.doubleclick.net rs.fullstory.com app.pendo.io data.product-ops.everyaction.com data.pendo.io content.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com media.twiliocdn.com chunderw-vpc-gll.twilio.com wss://chunderw-vpc-gll.twilio.com eventgw.twilio.com wss://device.webrtc.bandwidth.com wss://www.vancanada.ca; font-src 'self' data: fonts.gstatic.com heapanalytics.com; object-src 'self'; media-src 'none'; frame-src 'self' *.securevan.com accounts.ngpvan.com bid.g.doubleclick.net js.verygoodvault.com app.pendo.io data.product-ops.everyaction.com player.vimeo.com;
Strict-Transport-Security: max-age=31536000
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Date: Thu, 07 Oct 2021 02:08:39 GMT
Content-Length: 128
Set-Cookie: visid_incap_1228402=oVwLgS75Q0eA6J0jHD2hAqdWXmEAAAAAQUIPAAAAAAArBLZyNZSUFmRaP8x2g613; expires=Thu, 06 Oct 2022 07:07:27 GMT; HttpOnly; path=/; Domain=.vancanada.ca
Set-Cookie: nlbi_1228402=gLdSHNYBoiB2dgnUxQFrNAAAAABjT8cuzw+CmfX3x3BSfkfa; path=/; Domain=.vancanada.ca
Set-Cookie: incap_ses_702_1228402=gBjiW2iomE6kSXzh1QG+CadWXmEAAAAAjR89yqo9IJTJO/fLDYC5mw==; path=/; Domain=.vancanada.ca
X-CDN: Imperva
X-Iinfo: 3-5985278-5985280 NNNN CT(6 18 0) RT(1633572519654 19) q(0 0 0 -1) r(1 1) U11
HTTP/1.1 302 Found
Cache-Control: no-cache
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Location: https://id.ngpvan.com/authorize?client_id=SujMZilrRg1rLS1AQinXPb9aOhdTXMOP&response_type=id_token&scope=openid+profile+email&redirect_uri=https%3A%2F%2Fwww.vancanada.ca%2FOpenIdConnectCallBack.aspx%3Fprovider%3D9&state=f9abd141346f426a8157ba8701034753&nonce=fec34cf984fd4fc6a9a75e654753f10f&response_mode=form_post&prompt=none
Set-Cookie: ASP.NET_SessionId=i0br5hq0jumdvcudbirdbnr3; path=/; secure; HttpOnly; SameSite=Lax
Set-Cookie: ConnectReqData.9.f9abd141346f426a8157ba8701034753=ei548D02l74NtgRcyDABjsAcqjC0sa3RuItGKoQ5CGXAi2nUcv/Xy9kV0ZW5Wwju9XXh9J8KYiFxwwr7u4UyvlDhVxrECp93faGpmCVf/n+EBtsU+wRUM+bxqv44zAerz2s4hbHtP3YzUFvsIxBKx8PDEesasEICJPde21ZdruqR/DrCP6u/VNFy3lp1SUMO1PmFt5X9M7mE/yin; expires=Thu, 07-Oct-2021 02:23:40 GMT; path=/; SameSite=None; secure; HttpOnly
Content-Security-Policy: default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com *.gstatic.com www.googletagmanager.com *.google-analytics.com platform.twitter.com *.googleadservices.com bid.g.doubleclick.net googleads.g.doubleclick.net analytics.twitter.com static.ads-twitter.com/ *.fullstory.com d6tizftlrpuof.cloudfront.net js-agent.newrelic.com bam.nr-data.net app.pendo.io data.product-ops.everyaction.com pendo-io-static.storage.googleapis.com cdn.pendo.io content.product-ops.everyaction.com f0f33f0a-dbb2-483b-7143-14e0ca966d58.storage.googleapis.com data.pendo.io pendo-static-5749633754857472.storage.googleapis.com js.verygoodvault.com media.twiliocdn.com; style-src 'self' 'unsafe-inline' *.googleapis.com *.google.com *.gstatic.com *.aptrinsic.com app.pendo.io data.product-ops.everyaction.com cdn.pendo.io content.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com; img-src 'self' data: images.thevan.us *.twimg.com www.google-analytics.com stats.g.doubleclick.net t.co www.google.com www.gstatic.com www.googletagmanager.com ssl.gstatic.com cdn.pendo.io content.product-ops.everyaction.com app.pendo.io data.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com data.pendo.io; connect-src 'self' accounts.ngpvan.com www.google-analytics.com *.google.com stats.g.doubleclick.net rs.fullstory.com app.pendo.io data.product-ops.everyaction.com data.pendo.io content.product-ops.everyaction.com pendo-static-5749633754857472.storage.googleapis.com media.twiliocdn.com chunderw-vpc-gll.twilio.com wss://chunderw-vpc-gll.twilio.com eventgw.twilio.com wss://device.webrtc.bandwidth.com wss://www.vancanada.ca; font-src 'self' data: fonts.gstatic.com heapanalytics.com; object-src 'self'; media-src 'none'; frame-src 'self' *.securevan.com accounts.ngpvan.com bid.g.doubleclick.net js.verygoodvault.com app.pendo.io data.product-ops.everyaction.com player.vimeo.com;
Strict-Transport-Security: max-age=31536000
X-Frame-Options: DENY
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Date: Thu, 07 Oct 2021 02:08:40 GMT
Content-Length: 471
Set-Cookie: visid_incap_1228402=R/dmfcA6SN23wJmAszc8cqdWXmEAAAAAQUIPAAAAAADZP397XGwqTRcNxlux7Br+; expires=Thu, 06 Oct 2022 07:07:27 GMT; HttpOnly; path=/; Domain=.vancanada.ca
Set-Cookie: incap_ses_702_1228402=sH/oCigGMU3pSXzh1QG+CadWXmEAAAAA/Cyn0jPT0DYNykWkPQLJvQ==; path=/; Domain=.vancanada.ca
X-CDN: Imperva
X-Iinfo: 3-5985278-5985280 SNNN RT(1633572519654 61) q(0 0 0 -1) r(2 2) U11
HTTP/2 200
date: Thu, 07 Oct 2021 02:08:40 GMT
content-type: text/html;charset=UTF-8
cf-ray: 69a3953d6c11e768-EWR
cache-control: no-cache, no-store
set-cookie: did=s%3Av0%3A7d9a2a40-2713-11ec-9db4-b5821c44e019.9lhhoBB1pX4Yvp3aticAtMi8tlIxuAl72vw7geu1k08; Max-Age=31557600; Path=/; Expires=Fri, 07 Oct 2022 08:08:40 GMT; HttpOnly; Secure; SameSite=None
strict-transport-security: max-age=31536000
vary: Accept-Encoding
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
ot-baggage-auth0-request-id: 69a3953d6c11e768
ot-tracer-sampled: true
ot-tracer-spanid: 7620a8ba3f92d023
ot-tracer-traceid: 703534915bb39402
pragma: no-cache
set-cookie: did_compat=s%3Av0%3A7d9a2a40-2713-11ec-9db4-b5821c44e019.9lhhoBB1pX4Yvp3aticAtMi8tlIxuAl72vw7geu1k08; Max-Age=31557600; Path=/; Expires=Fri, 07 Oct 2022 08:08:40 GMT; HttpOnly; Secure
x-auth0-requestid: 12c34a41b2532ed5ff52
x-content-type-options: nosniff
x-ratelimit-limit: 1000
x-ratelimit-remaining: 999
x-ratelimit-reset: 1633572521
server: cloudflare
alt-svc: h3=":443"; ma=86400, h3-29=":443"; ma=86400, h3-28=":443"; ma=86400, h3-27=":443"; ma=86400
|