AkamaiGHost
tcp/80
AmazonS3
tcp/443
Open service 2.16.204.154:80 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:21 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=9a1d1002f04b1100551271697c00000080030000; path=/; domain=.ntrs.com
Open service 2.16.204.147:80 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:22 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=931d1002eeed2a0056127169220000007b080000; path=/; domain=.ntrs.com
Open service 2.16.204.147:443 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:58 GMT
x-amz-version-id: gsO3w_1ZCSg.RUyY0Jiy5RI4Km6M7Ewn
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: p3jqa7rRgN1PffRvCJpOBkpHww_mKhi-uBXmUefSPRKap2s7s1-KFQ==
Date: Wed, 21 Jan 2026 17:52:00 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=9a1d1002f04b110040127169c100000015020000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2001:41a8:44:4::4f8c:5f81:443 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:58 GMT
x-amz-version-id: gsO3w_1ZCSg.RUyY0Jiy5RI4Km6M7Ewn
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: RKVAJG-he_kgWVsjPObkD2vbmXpvy_mZ4O5mHlPAoTY_4RpueOPxfw==
Date: Wed, 21 Jan 2026 17:52:00 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=445f8c4fd38e2b004012716941030000af0c0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2001:41a8:44:4::4f8c:5f81:80 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:21 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=7d5f8c4ff88b3e00551271699e03000037000000; path=/; domain=.ntrs.com
Open service 2.16.204.154:443 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:58 GMT
x-amz-version-id: gsO3w_1ZCSg.RUyY0Jiy5RI4Km6M7Ewn
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: 7ZtSWFenVCtW0ZaLsgT9QAl52-cqjBWMQY6uVkzTdGGwBV7_Qm6f-A==
Date: Wed, 21 Jan 2026 17:51:59 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d1002eeed2a003f127169f6010000f1060000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2001:41a8:44:4::4f8c:5f48:443 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:58 GMT
x-amz-version-id: gsO3w_1ZCSg.RUyY0Jiy5RI4Km6M7Ewn
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: UO3IecDazVvfXpCqD7oKS-fQHWcK83nas0cNCIMpCHMvM_DEHXvRjw==
Date: Wed, 21 Jan 2026 17:52:00 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=445f8c4fd38e2b00401271693d030000ae0c0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2001:41a8:44:4::4f8c:5f48:80 · intfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:21 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=445f8c4fd38e2b005512716966030000d00c0000; path=/; domain=.ntrs.com
Open service 92.123.104.41:443 · intfos.northerntrust.com
2026-01-09 17:20
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: w_z20AZUPVPpycKtpWauLeApiuoimnHyfQcfaQOGl4Tbz2DYj2BS_g==
Date: Fri, 09 Jan 2026 17:20:28 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=c0a72917977e0000dc386169b70200002c170000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a247:80 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:35:00 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=07a024172fe2330004615e6957020000bc030000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a255:443 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: PIMMZFLg5P-OtIxZhy_cTXbe4HWaYqLjqJPE7z-5hcUv-tLTLgI0YQ==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=15a0241764372400db605e69ac010000b40f0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a255:80 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:35:00 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=15a024176437240004615e6912000000c90f0000; path=/; domain=.ntrs.com
Open service 2.16.204.154:443 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: 1FSTSTJ74Rn6aPwAFESZ0hvMbcfAhXxb52GZFQqFhRNy_zejXz4InA==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d100214b92700db605e69660300005f0b0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.147:80 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:35:00 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=931d100214b9270004615e695c000000570c0000; path=/; domain=.ntrs.com
Open service 2.16.204.154:80 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:34:59 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=9a1d10023674210003615e69440100009f050000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a247:443 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: L09YVhGRoBJeA5E1r6mtHX_sDn3tsydHGrnHr7ohih6eBAi2kXpPUQ==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=15a0241764372400db605e6936010000ac0f0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.147:443 · intfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: HEcQqM72ptAp3PprSRU0mE381m-NUoim-lKryhq3Tvqw9NgC4whn6w==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d100214b92700db605e6915020000560b0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 92.123.104.41:443 · intfos.northerntrust.com
2026-01-01 22:55
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: 0w8HOYE5yZSNwWkdI37JXvCljcsiV8y60QFRcvYOXsjHaEHq8PHHSw==
Date: Thu, 01 Jan 2026 22:55:48 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=a9a72917447d220074fb5669830200007a0e0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.154:443 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: K4_DGU80MkYaMbqTrpF4bCY39Is7veX_SqNOJg7Yx5dFR4PQV5lCxQ==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d100214b9270042c64a69460000000f060000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.147:80 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=931d100214b9270044c64a698102000054060000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a255:80 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=15a024176437240044c64a69d50000003d070000; path=/; domain=.ntrs.com
Open service 2.16.204.147:443 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: KcrkVAQBBrQsXvVt0NK2S0bj06LNJ810KXE842SzuS8LdnV_7DZDCw==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=9a1d10023674210042c64a69dc00000064000000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a247:80 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=07a024172fe2330044c64a692b020000f0000000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a255:443 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: W9ta4jOiu7vwv1QXDi5shkhtvkEXv0HC3qIa33rrdaYTWs-QSpkjsA==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=07a024172fe2330042c64a691c000000d3000000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.154:80 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://intfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=9a1d10023674210044c64a69e600000092000000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a247:443 · intfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: vw3CPUftcS5QjaqfOqihVOEWJRV2g3pLNWiFm94Bc9d5_oXxc4Omow==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=15a024176437240042c64a691d0000002a070000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 92.123.104.41:443 · intfos.northerntrust.com
2025-12-22 13:20
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2025 17:50:06 GMT
x-amz-version-id: noPH37De8pO7yvNTR37T3IzTZ0A5zpNs
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P9
X-Amz-Cf-Id: LHKtohBUfaPEmmt5AIoiOB-pPsBl2b_WTSk0qDjOdhXTi7IqYOYXyw==
Date: Mon, 22 Dec 2025 13:20:39 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=c0a72917977e0000a7454969910000004f010000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}