反向代理
反向代理用于把 Securex NVR 放到统一域名、HTTPS 或已有网关之后。代理必须正确处理普通 HTTP、WebSocket、媒体流和较长请求。
核心说明
本页内容按该功能本身整理,不再使用通用占位说明。以下项目均与当前主题直接相关。
Base URL
外部地址与内部容器地址要区分;移动端添加服务器时填写用户实际能够访问的 Base URL。
WebSocket
代理需要允许 Upgrade/Connection 头,否则状态更新、实时功能或部分 API 会异常。
超时与缓存
录像/导出和媒体请求可能持续较长时间,不应使用过短 proxy timeout;动态 API 不应被错误缓存。
认证
不要把内部无认证端口直接暴露到互联网;公网入口必须使用 Securex 认证或受控的外部认证层。
验证与排查
- 修改或执行前记录当前版本/配置,以便回退。
- 完成后同时检查 UI 状态和后端日志,不只看一个成功提示。
- 如果问题只在单个摄像头/插件出现,先做最小范围对比,避免全局改动。
Reverse Proxy
A reverse proxy places Securex NVR behind a domain/HTTPS gateway and must correctly handle HTTP, WebSocket, media streaming and long-lived requests.
Core behavior
This page is topic-specific rather than a generic placeholder.
Base URL
Keep external and internal URLs distinct; mobile clients use the externally reachable Base URL.
WebSocket
Allow WebSocket upgrade headers or real-time features may fail.
Timeout/cache
Use sufficient proxy timeouts and avoid caching dynamic API responses.
Authentication
Never expose an unauthenticated internal port directly to the Internet.
Verification and troubleshooting
- Record the current version/config before changes so rollback is possible.
- Verify both UI state and backend logs after the change.
- If only one camera/plugin is affected, isolate it before making global changes.
Proxy inverso
Un proxy inverso publica Securex NVR con dominio/HTTPS y debe manejar HTTP, WebSocket, streaming y conexiones largas.
Comportamiento
Esta página contiene contenido específico del tema, no un texto genérico.
URL base
Separe URL externa e interna; móvil usa la accesible externamente.
WebSocket
Permita cabeceras Upgrade/Connection.
Timeout/caché
Use timeouts adecuados y no cachee API dinámicas.
Autenticación
No exponga un puerto interno sin autenticación.
Verificación y diagnóstico
- Registre versión/configuración antes de cambiar para poder revertir.
- Compruebe UI y logs del backend después.
- Si afecta a una sola cámara/plugin, aíslelo antes de cambios globales.
