# HTTP IN Node - handling preflight OPTIONS method

**URL:** <https://discourse.nodered.org/t/http-in-node-handling-preflight-options-method/98919>\
**Category:** General\
**Tags:** http-in\
**Created:** [3 September 2025 02:51 UTC](https://discourse.nodered.org/t/http-in-node-handling-preflight-options-method/98919 "2025-09-03T02:51:48Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![DesP](https://avatars.discourse-cdn.com/v4/letter/d/bbce88/32.png) [@DesP](https://discourse.nodered.org/u/DesP)\
**Post date:** [3 September 2025 02:51 UTC](https://discourse.nodered.org/t/http-in-node-handling-preflight-options-method/98919/1 "2025-09-03T02:51:48Z")

</div>

Hi,

I’m trying to debug / deal with a CORS issue and am struggling to deal with handling the preflight OPTIONS method.  
My HTTP IN node looks like this:  
`[`  
`{`  
`"id": "options-preflight",`  
`"type": "http in",`  
`"z": "92427cf81310d58f",`  
`"name": "OPTIONS /register",`  
`"url": "/register",`  
`"method": "options",`  
`"upload": false,`  
`"swaggerDoc": "",`  
`"x": 180,`  
`"y": 420,`  
`"wires": [`  
`[`  
`"options-cors",`  
`"add84e739de2ace9"`  
`]`  
`]`  
`}`  
`]`

When the frontend tries to hit the “/register” endpoint I see no evidence that the OPTIONS method has been routed to this endpoint.

I am concerned that the UI doesn’t show “OPTIONS” in the dropdown - Does this imply that OPTIONS is not a valid verb in this node?

Sorry if I’ve not explained this very well. I’ll do my best to add any further info on request.

TIA

---

<div class="post-metadata">

**Author:** ![DesP](https://avatars.discourse-cdn.com/v4/letter/d/bbce88/32.png) [@DesP](https://discourse.nodered.org/u/DesP)\
**Post date:** [4 September 2025 14:42 UTC](https://discourse.nodered.org/t/http-in-node-handling-preflight-options-method/98919/2 "2025-09-04T14:42:47Z")

</div>

Hi,

In the end I gave up trying to resolve the CORS issue and changed my install to put Node Red behind an IIS reverse proxy and used URL ReWrite to route to a “new” /api endpoint.

Everything works perfectly and no CORS issues!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [3 December 2025 14:43 UTC](https://discourse.nodered.org/t/http-in-node-handling-preflight-options-method/98919/3 "2025-12-03T14:43:06Z")

</div>

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.
