Cookie 设置 domain 后<a>
标签可以直接跨域。
api请求需要另外设置 withCredentials
http://jiaoyan.100100.com/test.html
<html>
<script>
document.cookie="username=John Doe;domain=100100.com";
</script>
<p>test</p>
<button onclick="get('http://jiaoyan.100100.com/api/question_detail/class_subject_info?userID=1000024&userType=16&userToken=ADx5ngrlrTsg4B88Sr0B0B&uuid=e99-4b1e-870d-3852e4097a17')">teacher</button>
<button onclick="get('http://100100.com/biz_hq/edu/courses/refreshCourseScheduleStatus')">10019</button>
<button onclick="get('http://ss1.100100.com/biz_hq/edu/courses/refreshCourseScheduleStatus')">ss1</button>
<a href="http://100100.com">home</a>
<script>
function get(url){
var request = new XMLHttpRequest();
request.open("GET",url,true);
request.withCredentials = true;
request.send(null);
}
</script>
</html>