mirror of
https://gitea.com/gitea/docs.git
synced 2026-09-18 03:58:52 +00:00
Document Reverse Proxy authentication for API (#84)
I figured out that the reverse proxy authentication for the API is supported (implemented with https://github.com/go-gitea/gitea/pull/26703). This will update the documentation to the current state. Co-authored-by: Lunny Xiao <[email protected]> Co-authored-by: Philipp Arndt <[email protected]> Reviewed-on: https://gitea.com/gitea/docs/pulls/84 Reviewed-by: Lunny Xiao <[email protected]> Co-authored-by: philipparndt <[email protected]> Co-committed-by: philipparndt <[email protected]>
This commit is contained in:
committed by
techknowlogick
co-authored by
Lunny Xiao
Philipp Arndt
parent
8d114d7c6b
commit
e8344b03cb
@@ -281,4 +281,13 @@ ENABLE_REVERSE_PROXY_AUTHENTICATION = true
|
||||
|
||||
你也可以通过修改 `REVERSE_PROXY_TRUSTED_PROXIES` 来设置反向代理的IP地址范围,加强安全性,默认值是 `127.0.0.0/8,::1/128`。 通过 `REVERSE_PROXY_LIMIT`, 可以设置最多信任几级反向代理。
|
||||
|
||||
注意:反向代理认证不支持认证 API,API 仍旧需要用 access token 来进行认证。
|
||||
你可以通过以下配置为 API 启用此认证方法:
|
||||
|
||||
```ini
|
||||
[service]
|
||||
ENABLE_REVERSE_PROXY_AUTHENTICATION_API = true
|
||||
```
|
||||
|
||||
:::note
|
||||
当此方法用于 API 时,反向代理负责处理 CSRF 保护。
|
||||
:::
|
||||
|
||||
Reference in New Issue
Block a user