|
tests / pest (push) Successful in 6m53s
Details
tests / assets (push) Successful in 18s
Details
tests / release (push) Successful in 3s
Details
RestrictAdminHost answers under which NAME the console responds — and the caller picks the Host header, so it can never answer who is asking. This does: a network gate on the client address, which behind a trusted proxy is not something the client chooses. The management VPN is always in the list and cannot be removed — it is the one way in that survives a bad entry. Beyond that the owner keeps their own addresses in the console, because being away from the VPN should not mean being locked out, and the person who needs to change that list is the person sitting in front of it. Two refusals rather than warnings, since by the time a warning renders the request that would show it has already been rejected: switching the restriction ON is refused unless the address doing the switching is already covered, and removing the entry you are sitting behind is refused. Entries are validated as an address or CIDR — a typo that matches nothing is how someone locks themselves out while believing they have not. 404, never 403. Registered as persistent Livewire middleware, and verified in a browser that it holds there: with the settings page open, narrowing the list turned the next action from 200 into 404. Codex read the path guard as skipping /livewire/update; Livewire in fact replays middleware against a duplicate of the request carrying the original component's path, so the guard matches and the client address is preserved. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| confirm-delete-datacenter.blade.php | ||
| confirm-delete-plan-draft.blade.php | ||
| confirm-delete-vpn-peer.blade.php | ||
| confirm-remove-host.blade.php | ||
| customers.blade.php | ||
| datacenters.blade.php | ||
| edit-datacenter.blade.php | ||
| host-create.blade.php | ||
| host-detail.blade.php | ||
| hosts.blade.php | ||
| instance-admin-access.blade.php | ||
| instances.blade.php | ||
| maintenance.blade.php | ||
| overview.blade.php | ||
| plan-versions.blade.php | ||
| plans.blade.php | ||
| provisioning.blade.php | ||
| revenue.blade.php | ||
| settings.blade.php | ||
| vpn-config-access.blade.php | ||
| vpn.blade.php | ||