Edit+ is HTTPS only, our site (tmbc.gov.uk) is HTTPS only and only our domain URLs are applied on assets under site asset. However, we have assets outside the site asset that have multiple URLs because we have multi-domain setup (5 separate sites).
I don’t see any difference in requests & responses between assetid and text searches, maybe I am missing something.
ASSETID search:
Request H:
POST /services/advice-and-benefits/grants/_edit?SQ_BACKEND_PAGE=header HTTP/1.1
Host: www.tmbc.gov.uk
Connection: keep-alive
Content-Length: 174
Pragma: no-cache
Cache-Control: no-cache
Accept: /
Origin: https://www.tmbc.gov.uk
X-Requested-With: XMLHttpRequest
User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.99 Safari/537.36
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Referer: https://www.tmbc.gov.uk/services/advice-and-benefits/grants/_edit
Accept-Encoding: gzip, deflate, br
Accept-Language: en-GB,en-US;q=0.9,en;q=0.8
Cookie: _ga=GA1.3.12.1544; tmbc-consent=true; resolution=1920; _gid=GA1.3.1145.1537; SQ_SYSTEM_SESSION=hvqo5eacqmq61h3; csrf=6e36e6fd2bbd
Response H:
HTTP/1.1 200 OK
Date: Mon, 02 Jul 2018 08:22:47 GMT
Server: Apache
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding,Origin
Content-Encoding: gzip
Strict-Transport-Security: max-age=31536000; includeSubDomains
Access-Control-Allow-Origin: https://www.tmbc.gov.uk
Access-Control-Allow-Headers: origin, x-requested-with, content-type
Access-Control-Allow-Methods: POST,GET,OPTIONS
Content-Length: 8859
Connection: close
Content-Type: text/html; charset=utf-8
Form Data:
token: 52f1e7ae
process_form: 1
asset_search: 21776
asset_search_root: 9195,9195,10215,16196,94322,96044,95782
asset_search_redirect: 0
===========================================================================
Text search:
Request H:
POST /services/advice-and-benefits/grants/_edit?SQ_BACKEND_PAGE=header HTTP/1.1
Host: www.tmbc.gov.uk
Connection: keep-alive
Content-Length: 177
Pragma: no-cache
Cache-Control: no-cache
Accept: /
Origin: https://www.tmbc.gov.uk
X-Requested-With: XMLHttpRequest
User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.99 Safari/537.36
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Referer: https://www.tmbc.gov.uk/services/advice-and-benefits/grants/_edit
Accept-Encoding: gzip, deflate, br
Accept-Language: en-GB,en-US;q=0.9,en;q=0.8
Cookie: _ga=GA1.3.1273.29644; tmbc-consent=true; resolution=1920; _gid=GA1.3.10.17; SQ_SYSTEM_SESSION=hvnsn1ii11h3; csrf=6e36e495
Response H:
HTTP/1.1 200 OK
Date: Mon, 02 Jul 2018 08:27:36 GMT
Server: Apache
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding,Origin
Content-Encoding: gzip
Strict-Transport-Security: max-age=31536000; includeSubDomains
Access-Control-Allow-Origin: https://www.tmbc.gov.uk
Access-Control-Allow-Headers: origin, x-requested-with, content-type
Access-Control-Allow-Methods: POST,GET,OPTIONS
Content-Length: 9046
Connection: close
Content-Type: text/html; charset=utf-8
Form Data:
token: 52
process_form: 1
asset_search: #21776
asset_search_root: 9195,9195,10215,16196,94322,96044,95782
asset_search_redirect: 0
(cookie & token values have been edited by me)