set Access-Control-Allow-Origin: * on successful redirects

......@@ -151,6 +151,7 @@ def login():
response.set_cookie(SSO_COOKIE_NAME, local_ticket_str,
path=app.config['APPLICATION_ROOT'] or '/',
secure=True, httponly=True)
response.headers['Access-Control-Allow-Origin'] = '*'
return response
