From 1125ef3b823726f60c9b76e931e92e0879189b4a Mon Sep 17 00:00:00 2001 From: Tushar-TG-14 Date: Wed, 28 Jan 2026 00:59:44 +0530 Subject: [PATCH 1/2] DOC-2537: Document GUI CORS configuration parameters Add configuration parameters for GUI CORS settings. --- .../pages/configuration-parameters.adoc | 20 +++++++++++++++++++ 1 file changed, 20 insertions(+) diff --git a/modules/reference/pages/configuration-parameters.adoc b/modules/reference/pages/configuration-parameters.adoc index c03b28bd..0bce2a98 100644 --- a/modules/reference/pages/configuration-parameters.adoc +++ b/modules/reference/pages/configuration-parameters.adoc @@ -645,6 +645,26 @@ System.TempRoot) |`gui` |GUI.TempFileMaxDurationDay |GUI temp file max duration time in days |`7` + +|GUI.EnableCORS +a|Controls whether the GUI (GraphStudio and Admin Portal) accepts cross-origin requests. + +Supported values: +* `DISABLE` – Disable all CORS requests (default). +* `ENABLE_ALL` – Allow requests from any origin. +* `ENABLE_WHITE_LIST` – Allow requests only from origins specified in `GUI.WhiteListCORS`. + +When CORS is enabled, CORS-related HTTP headers are managed automatically by TigerGraph. +|`DISABLE` + +|GUI.WhiteListCORS +|A list of allowed origins when `GUI.EnableCORS` is set to `ENABLE_WHITE_LIST`. +Each origin must include the scheme and host (for example, https://example.com). +If a non-default port is used, include it explicitly. + +This setting is ignored unless `GUI.EnableCORS=ENABLE_WHITE_LIST`. +|`["https://example.com"]` + |=== == Gadmin From 47a3880c70419af406527f469ea49a979387d8b6 Mon Sep 17 00:00:00 2001 From: Tushar-TG-14 Date: Thu, 29 Jan 2026 19:09:26 +0530 Subject: [PATCH 2/2] DOC-2537: Changes Updated --- .../pages/configuration-parameters.adoc | 30 +++++++++---------- 1 file changed, 15 insertions(+), 15 deletions(-) diff --git a/modules/reference/pages/configuration-parameters.adoc b/modules/reference/pages/configuration-parameters.adoc index 0bce2a98..99696bcb 100644 --- a/modules/reference/pages/configuration-parameters.adoc +++ b/modules/reference/pages/configuration-parameters.adoc @@ -607,12 +607,24 @@ and AdminPortal before inactivity logout |`604800` |GUI.Cookie.SameSite |Default mode: 1; Lax mode: 2; Strict mode: 3; None mode: 4 |`3` +|GUI.DataDirRelativePath |The relative path of gui data folder (to the +System.DataRoot) |`gui` + |GUI.EnableConcurrentSession |Enable or disable concurrent sessions for GUI. Setting to `false` will disable concurrent sessions.The default value is `true`. |`true` -|GUI.DataDirRelativePath |The relative path of gui data folder (to the -System.DataRoot) |`gui` +|GUI.EnableCORS +a|Controls whether the GUI (GraphStudio and Admin Portal) accepts cross-origin requests. + +Supported values: + +* `DISABLE` – Disable all CORS requests (default). +* `ENABLE_ALL` – Allow requests from any origin. +* `ENABLE_WHITE_LIST` – Allow requests only from origins specified in `GUI.WhiteListCORS`. + +When CORS is enabled, CORS-related HTTP headers are managed automatically by TigerGraph. +|`DISABLE` |GUI.EnableDarkTheme |The boolean value on whether or not GUI should enable dark theme |`true` @@ -646,23 +658,11 @@ System.TempRoot) |`gui` |GUI.TempFileMaxDurationDay |GUI temp file max duration time in days |`7` -|GUI.EnableCORS -a|Controls whether the GUI (GraphStudio and Admin Portal) accepts cross-origin requests. - -Supported values: -* `DISABLE` – Disable all CORS requests (default). -* `ENABLE_ALL` – Allow requests from any origin. -* `ENABLE_WHITE_LIST` – Allow requests only from origins specified in `GUI.WhiteListCORS`. - -When CORS is enabled, CORS-related HTTP headers are managed automatically by TigerGraph. -|`DISABLE` - |GUI.WhiteListCORS -|A list of allowed origins when `GUI.EnableCORS` is set to `ENABLE_WHITE_LIST`. +|JSON list of allowed origin server URLs when `GUI.EnableCORS` is set to `ENABLE_WHITE_LIST`. Each origin must include the scheme and host (for example, https://example.com). If a non-default port is used, include it explicitly. -This setting is ignored unless `GUI.EnableCORS=ENABLE_WHITE_LIST`. |`["https://example.com"]` |===