Authentication
认证 API 负责建立和验证用户会话。客户端应把“凭据错误”“服务器不可达”“证书错误”和“路径错误”区分显示。
核心说明
本页内容按该功能本身整理,不再使用通用占位说明。以下项目均与当前主题直接相关。
凭据
密码、token 和刷新凭据只通过 HTTPS 发送并安全存储。
会话
登录成功后仍需验证后续 API 是否可访问;200 登录响应不代表媒体路径一定正确。
失败码
401 表示未认证/凭据无效,403 表示已识别但无权限;客户端应分别处理。
代理
反向代理改写路径或 Cookie 属性时可能导致“登录成功但立即掉线”。
验证与排查
- 修改或执行前记录当前版本/配置,以便回退。
- 完成后同时检查 UI 状态和后端日志,不只看一个成功提示。
- 如果问题只在单个摄像头/插件出现,先做最小范围对比,避免全局改动。
Authentication
Authentication APIs establish and validate user sessions. Clients should distinguish bad credentials from reachability, certificate and path errors.
Core behavior
This page is topic-specific rather than a generic placeholder.
Credentials
Send secrets only over HTTPS and store them securely.
Session
After login, verify subsequent API/media access.
Status codes
Handle 401 and 403 separately.
Proxy
Path/cookie rewriting can cause login loops.
Verification and troubleshooting
- Record the current version/config before changes so rollback is possible.
- Verify both UI state and backend logs after the change.
- If only one camera/plugin is affected, isolate it before making global changes.
Authentication
La API de autenticación crea y valida sesiones. El cliente debe distinguir credenciales, red, certificado y ruta.
Comportamiento
Esta página contiene contenido específico del tema, no un texto genérico.
Credenciales
Envíe secretos solo por HTTPS y almacénelos de forma segura.
Sesión
Tras login, verifique API y medios.
Códigos
Trate 401 y 403 por separado.
Proxy
Reescritura de rutas/cookies puede causar bucles de login.
Verificación y diagnóstico
- Registre versión/configuración antes de cambiar para poder revertir.
- Compruebe UI y logs del backend después.
- Si afecta a una sola cámara/plugin, aíslelo antes de cambios globales.
