AkamaiGHost
tcp/80
AmazonS3
tcp/443
Open service 92.123.104.64:443 · uatfos.northerntrust.com
2026-01-23 15:14
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:37 GMT
x-amz-version-id: Q4LnneihgGs3DtOU0xYd2TDxgIT0ZS2b
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: YTlRdcQTDvAs_9DiLqhaOmxQCgihDYusZG-J-wejFwlwolw8WrtgrA==
Date: Fri, 23 Jan 2026 15:14:11 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=a9a7291730ea360043907369bc00000025070000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2.16.204.154:80 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:21 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=9a1d1002f04b110055127169b300000082030000; path=/; domain=.ntrs.com
Open service 2001:41a8:44:4::4f8c:5f48:80 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:23 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=445f8c4fd38e2b00571271692e030000d50c0000; path=/; domain=.ntrs.com
Open service 2001:41a8:44:4::4f8c:5f81:443 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:37 GMT
x-amz-version-id: Q4LnneihgGs3DtOU0xYd2TDxgIT0ZS2b
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: 7INgN3J4revRcoh_1xCJdHefNNvf7-PkAepo4QLKQU5W-ftO2hZMXQ==
Date: Wed, 21 Jan 2026 17:52:00 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=7d5f8c4ff88b3e0040127169ff02000016000000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2.16.204.147:443 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:37 GMT
x-amz-version-id: Q4LnneihgGs3DtOU0xYd2TDxgIT0ZS2b
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: W3KrOxqJpLM-Kv27lE2xy0DTk8W61WkaB-93wJnljhfhMjjl4qUoMw==
Date: Wed, 21 Jan 2026 17:51:59 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=9a1d1002f04b11003f127169c702000009020000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2.16.204.147:80 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:21 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=931d1002eeed2a00551271697b00000062080000; path=/; domain=.ntrs.com
Open service 2.16.204.154:443 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:37 GMT
x-amz-version-id: Q4LnneihgGs3DtOU0xYd2TDxgIT0ZS2b
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: oD541yVwiTmKxKuFNMBC7CvZQF2NE3UfAzvlhyJUvoYsE_O3LRY5uA==
Date: Wed, 21 Jan 2026 17:51:59 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d1002eeed2a003f12716912020000f2060000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2001:41a8:44:4::4f8c:5f48:443 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Tue, 13 Jan 2026 15:53:37 GMT
x-amz-version-id: Q4LnneihgGs3DtOU0xYd2TDxgIT0ZS2b
ETag: W/"a22dd2cbf5e51ee811b5afb2ffd264af"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: LwxM8foSGwPTbhjybJhLzyKX9Lxcg6dibVGhV2LJdCqu-6IZtOfHuw==
Date: Wed, 21 Jan 2026 17:52:02 GMT
Content-Length: 6188
Connection: close
Set-Cookie: NTRS_VISIT_ID=7d5f8c4ff88b3e0042127169eb00000027000000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
worker-src 'self' blob: https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.
Open service 2001:41a8:44:4::4f8c:5f81:80 · uatfos.northerntrust.com
2026-01-21 17:51
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 21 Jan 2026 17:52:21 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=7d5f8c4ff88b3e00551271699d0000002e000000; path=/; domain=.ntrs.com
Open service 92.123.104.64:443 · uatfos.northerntrust.com
2026-01-10 02:10
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: UwlrX_Itt5tBVE2ir_DX6YvGILVlDuoqzMvOHuNeRKRkGk9iFwC8Iw==
Date: Sat, 10 Jan 2026 02:10:03 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=c0a72917977e0000fbb461699902000041170000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a255:80 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:34:59 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=15a024176437240003615e697d030000c60f0000; path=/; domain=.ntrs.com
Open service 2.16.204.147:80 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:34:59 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=931d100214b9270003615e692c010000500c0000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a255:443 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: qDYIKJiyKbz-jgZyi-NY8b4oHaxCasG9AsFzyDIq1Hq6PF8e1UaQuQ==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=15a0241764372400db605e69b1000000ab0f0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.154:80 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:34:56 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=9a1d10023674210000615e69db0100009a050000; path=/; domain=.ntrs.com
Open service 2.16.204.147:443 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: YpPpdistdiTeMeJghmIJWnefUbtT-BQ6homdKP4XUXjG_hMbV995BQ==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=9a1d100236742100db605e6990010000af040000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.154:443 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: 9rqOwdtNTGbvIGiT5kf-VEhwDDNHbHu3qZ1VFGFUP97vpfzCaaYQOw==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=9a1d100236742100db605e699f030000ba040000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a247:80 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Wed, 07 Jan 2026 13:34:59 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=07a024172fe2330003615e6972000000b1030000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a247:443 · uatfos.northerntrust.com
2026-01-07 13:34
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: fY7-_nQtkzAy__dw_Db-gn3j1FMPmjwamFpLMhxKA36n5aXKe4obTg==
Date: Wed, 07 Jan 2026 13:34:19 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=15a0241764372400db605e69fe010000b70f0000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 92.123.104.64:443 · uatfos.northerntrust.com
2026-01-03 00:24
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK50-P5
X-Amz-Cf-Id: itGY-6ZiJ_-tpYBm5osVoEv4q-Gbcfsf0ndY2krIfXG1fEelDbs30w==
Date: Sat, 03 Jan 2026 00:24:43 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=a9a7291737cb1b00cb6158698d02000013000000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.154:80 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:41 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=9a1d10023674210045c64a693e000000b5000000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a255:80 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=15a024176437240044c64a69ba03000051070000; path=/; domain=.ntrs.com
Open service 2.16.204.147:80 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=931d100214b9270044c64a699202000055060000; path=/; domain=.ntrs.com
Open service 2.16.204.147:443 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: ukZAIPqtOKu5oQ2nK85NKZXkuND8uKm2kARfCNGTMC99qOF33HWP_Q==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d100214b9270042c64a699301000017060000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2.16.204.154:443 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: NYBxy7soax5PVjoLmvnn4YdXfYzazBoKCDsWkdUSmQ27ou5IT5s9WA==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=931d100214b9270042c64a698301000016060000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a255:443 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: ekJ8WZCkYPaa6K8JxYXUtYynhN9KCmLCsoVAoES7cSXbmdb-kC_8qw==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=15a024176437240042c64a69950000002e070000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 2a02:26f0:3500:14::1724:a247:80 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://uatfos.northerntrust.com/ Date: Tue, 23 Dec 2025 16:41:40 GMT Connection: close Set-Cookie: NTRS_VISIT_ID=07a024172fe2330044c64a69ce000000e5000000; path=/; domain=.ntrs.com
Open service 2a02:26f0:3500:14::1724:a247:443 · uatfos.northerntrust.com
2025-12-23 16:41
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: krboyGn2x5ah384LprmSrdnUk0G9bk6Ke50izLpzp8KHWI-0RUTNqg==
Date: Tue, 23 Dec 2025 16:41:38 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=07a024172fe2330042c64a6932000000d4000000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}
Open service 92.123.104.64:443 · uatfos.northerntrust.com
2025-12-23 08:26
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Mon, 22 Dec 2025 16:48:42 GMT
x-amz-version-id: zs_oChtIieKV_PQ_kT4pGIeRTstuiYaV
ETag: W/"4ee94b3d46fd7b76934c6e771763eb54"
Server: AmazonS3
Cache-Control: no-store
Expires: 0
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-FOS-URI: /index.html
X-Amz-Cf-Pop: JFK52-P3
X-Amz-Cf-Id: snwttropm8rvCSTkfhWocx-Ujl-bFOBuK_tuaNGDAJqZb_36ug5G9w==
Date: Tue, 23 Dec 2025 08:26:37 GMT
Content-Length: 6146
Connection: close
Set-Cookie: NTRS_VISIT_ID=a9a72917447d22003d524a69e7010000e0030000; path=/; domain=.ntrs.com
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Page title: Front Office Solutions
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta http-equiv="X-UA-Compatible" content="ie=edge">
<title>Front Office Solutions</title>
<!--
Remove this if you only support browsers that support async/await.
This is needed by babel to share largeish helper code for compiling async/await in older
browsers. More information at https://github.com/single-spa/create-single-spa/issues/112
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/regenerator-runtime@0.14.1/runtime.min.js"></script> -->
<!--
This CSP allows any SSL-enabled host and for arbitrary eval(), but you should limit these directives further to increase your app's security.
Learn more about CSP policies at https://content-security-policy.com/#directive
-->
<meta
http-equiv="Content-Security-Policy"
content="
default-src 'self' https:;
script-src 'unsafe-inline' 'unsafe-eval' https:;
connect-src https: wss://*.northerntrust.com wss://*.amzext.ntrs.com;
style-src 'unsafe-inline' https:;
object-src 'none';
font-src 'self' https: data:;
img-src 'self' https://*.northerntrust.com https://www.google-analytics.com https://www.googletagmanager.com data:;
frame-src 'self' https: com-okta-authenticator: about: data: blob:;
"
>
<!-- If you wish to turn off import-map-overrides for specific environments (prod), uncomment the line below -->
<!-- More info at https://github.com/joeldenning/import-map-overrides/blob/master/docs/configuration.md#domain-list -->
<!-- <meta name="import-map-overrides-domains" content="denylist:prod.example.com" /> -->
<!-- Shared dependencies go into this import map. Your shared dependencies must be of one of the following formats:
1. System.register (preferred when possible) - https://github.com/systemjs/systemjs/blob/master/docs/system-register.md
2. UMD - https://github.com/umdjs/umd
3. Global variable
More information about shared dependencies can be found at https://single-spa.js.org/docs/recommended-setup#sharing-with-import-maps.
-->
<link rel="preload" href="https://cdn.jsdelivr.net/npm/single-spa@6.0.3/lib/es2015/system/single-spa.min.js" as="script" crossorigin>
<link rel="preload" href="/apps/v2/fos-nav-bar/images/logo-fos-main.svg" as="image">
<!-- Add your organization's prod import map URL to this script's src -->
<!-- <script type="systemjs-importmap" src="/importmap.json"></script> -->
<meta name="importmap-type" content="systemjs-importmap" />
<script type="systemjs-importmap" src="/importmap.json"></script>
<!--
If you need to support Angular applications, uncomment the script tag below to ensure only one instance of ZoneJS is loaded
Learn more about why at https://single-spa.js.org/docs/ecosystem-angular/#zonejs
-->
<!-- <script src="https://cdn.jsdelivr.net/npm/zone.js@0.11.3/dist/zone.min.js"></script> -->
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/system.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/systemjs@6.15.1/dist/extras/amd.min.js"></script>
<style>
body, html {
background-color: white;
}
single-spa-router {
height: 100vh;
display: flex;
flex-direction: column;
}
single-spa-router > nav > div:not(:empty) {
height: 48px;
}
single-spa-router > nav > div:empty {
display: none;
}
.root-error-page {
height: 100vh;
width: 100vw;
position: relative;
color: #4a4d4f;
display: flex;
align-items: center;
justify-content: center;
}
.root-error-container {
display: flex;
flex-direction: column;
align-items: center;
justify-content: center;
text-align: center;
transform: translateY(-50%);
}
.root-error-summary {
font-size: 1.8rem;
line-height: 2.4rem;
margin-top: 2.5rem;
}