mirror of https://github.com/certd/certd
chore: doc
parent
47df2ffc3e
commit
b454e02d01
|
@ -91,17 +91,14 @@ export default defineConfig({
|
||||||
{text: "多数据库支持", link: "/guide/install/database.md"},
|
{text: "多数据库支持", link: "/guide/install/database.md"},
|
||||||
{text: "开放接口", link: "/guide/open/index.md"},
|
{text: "开放接口", link: "/guide/open/index.md"},
|
||||||
{
|
{
|
||||||
text: "站点安全", items: [
|
text: "站点安全", link: "/guide/feature/safe"
|
||||||
{text: "安全特性", link: "/guide/feature/safe"},
|
|
||||||
{text: "站点隐藏", link: "/guide/feature/safe/hidden"},
|
|
||||||
{text: "安全生产建议", link: "/guide/feature/safe/suggest"},
|
|
||||||
]
|
|
||||||
},
|
},
|
||||||
{text: "插件列表", items:[
|
{
|
||||||
{text: "授权提供商", link: "/guide/plugins/access"},
|
text: "插件列表", items: [
|
||||||
{text: "DNS提供商", link: "/guide/plugins/dns-provider"},
|
{text: "授权提供商", link: "/guide/plugins/access"},
|
||||||
{text: "任务插件", link: "/guide/plugins/deploy"},
|
{text: "DNS提供商", link: "/guide/plugins/dns-provider"},
|
||||||
{text: "通知插件", link: "/guide/plugins/notification"},
|
{text: "任务插件", link: "/guide/plugins/deploy"},
|
||||||
|
{text: "通知插件", link: "/guide/plugins/notification"},
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
]
|
]
|
||||||
|
@ -109,6 +106,7 @@ export default defineConfig({
|
||||||
{
|
{
|
||||||
text: "常见问题",
|
text: "常见问题",
|
||||||
items: [
|
items: [
|
||||||
|
{text: "常见报错处理", link: "/guide/qa/"},
|
||||||
{text: "群晖证书部署", link: "/guide/use/synology/"},
|
{text: "群晖证书部署", link: "/guide/use/synology/"},
|
||||||
{text: "腾讯云密钥获取", link: "/guide/use/tencent/"},
|
{text: "腾讯云密钥获取", link: "/guide/use/tencent/"},
|
||||||
{text: "连接windows主机", link: "/guide/use/host/windows.md"},
|
{text: "连接windows主机", link: "/guide/use/host/windows.md"},
|
||||||
|
@ -120,8 +118,14 @@ export default defineConfig({
|
||||||
{text: "js脚本插件使用", link: "/guide/use/custom-script/index.md"},
|
{text: "js脚本插件使用", link: "/guide/use/custom-script/index.md"},
|
||||||
{text: "邮箱配置", link: "/guide/use/email/index.md"},
|
{text: "邮箱配置", link: "/guide/use/email/index.md"},
|
||||||
{text: "IPv6支持", link: "/guide/use/setting/ipv6.md"},
|
{text: "IPv6支持", link: "/guide/use/setting/ipv6.md"},
|
||||||
{text: "其他插件使用", link: "/deploy/"},
|
{text: "ESXi", link: "/guide/use/ESXi/index.md"},
|
||||||
{text: "商业版说明", link: "/comm/"},
|
]
|
||||||
|
},
|
||||||
|
{
|
||||||
|
text: "商业版配置", link: "/guide/use/comm/", items: [
|
||||||
|
{text: "支付宝配置", link: "/guide/use/comm/payments/alipay.md"},
|
||||||
|
{text: "微信支付配置", link: "/guide/use/comm/payments/wxpay.md"},
|
||||||
|
{text: "彩虹易支付配置", link: "/guide/use/comm/payments/yizhifu.md"},
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
|
@ -138,26 +142,6 @@ export default defineConfig({
|
||||||
]
|
]
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"/deploy/": [
|
|
||||||
{
|
|
||||||
text: "部署证书插件",
|
|
||||||
items: [
|
|
||||||
{text: "插件说明", link: "/deploy/index.md"},
|
|
||||||
{text: "部署到ESXi", link: "/deploy/ESXi/index.md"},
|
|
||||||
]
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"/comm/": [
|
|
||||||
{
|
|
||||||
text: "商业版",
|
|
||||||
items: [
|
|
||||||
{text: "支付宝配置", link: "/comm/payments/alipay.md"},
|
|
||||||
{text: "微信支付配置", link: "/comm/payments/wxpay.md"},
|
|
||||||
{text: "彩虹易支付配置", link: "/comm/payments/yizhifu.md"},
|
|
||||||
]
|
|
||||||
}
|
|
||||||
]
|
|
||||||
,
|
|
||||||
},
|
},
|
||||||
|
|
||||||
socialLinks: [
|
socialLinks: [
|
||||||
|
|
|
@ -1,4 +0,0 @@
|
||||||
# 部署插件说明
|
|
||||||
|
|
||||||
## 待完善
|
|
||||||
|
|
|
@ -22,4 +22,6 @@
|
||||||

|

|
||||||
|
|
||||||
## 3、忘记解除地址和解除密码怎么办
|
## 3、忘记解除地址和解除密码怎么办
|
||||||
登录服务器,在数据库平级的目录下创建`.unhidden`文件即可`临时解除`站点隐藏
|
登录服务器,在数据库平级的目录下创建`.unhidden`命名的空白文件,即可临时解除站点隐藏
|
||||||
|
临时解除后会自动删除`.unhidden`文件,请尽快设置好新的`解除地址`和`解除密码`,并记住
|
||||||
|
|
||||||
|
|
|
@ -1,36 +1,48 @@
|
||||||
# 站点安全特性
|
# 安全特性
|
||||||
|
|
||||||
Certd 存储了证书以及授权等敏感数据,所以需要严格保障安全。
|
Certd 存储了证书以及授权等敏感数据,所以需要严格保障安全。
|
||||||
我们非常重视您的数据安全,提供了以下安全特性
|
我们提供了以下安全特性,以及安全生产建议(请遵照建议进行生产部署以保障数据安全)
|
||||||
|
|
||||||
## 1、 授权数据加密存储【默认开启】
|
## 一、站点安全特性
|
||||||
|
|
||||||
|
### 1、 授权数据加密存储【默认开启】
|
||||||
* 所有的授权敏感字段会加密后存储
|
* 所有的授权敏感字段会加密后存储
|
||||||
* 每个用户独立维护授权数据,连管理员都无权查看
|
* 每个用户独立维护授权数据,连管理员都无权查看
|
||||||
|
|
||||||

|

|
||||||
星号部分为加密数据
|
星号部分为加密数据
|
||||||
|
|
||||||
## 2、 密码防爆破【默认开启】
|
### 2、 密码防爆破【默认开启】
|
||||||
* 登录失败次数过多,账号将被锁定,最高24小时(重启服务可解除锁定)
|
* 登录失败次数过多,账号将被锁定,最高24小时(重启服务可解除锁定)
|
||||||
* 用户登录密码加密hash后存储,无法计算出密码明文
|
* 用户登录密码加密hash后存储,无法计算出密码明文
|
||||||

|

|
||||||
|
|
||||||
## 3、站点隐藏【建议开启】
|
### 3、站点隐藏【建议开启】
|
||||||
* 一般来说Certd设置好之后,后续很少需要访问修改。
|
* 一般来说Certd设置好之后,后续很少需要访问修改。
|
||||||
* 所以我们平时可以把站点访问关闭,需要的时候再打开,减少站点被攻击的风险
|
* 所以我们平时可以把站点访问关闭,需要的时候再打开,减少站点被攻击的风险
|
||||||
* 请前往 `系统管理->系统设置->安全设置->开启站点隐藏`
|
* 请前往 `系统管理->系统设置->安全设置->开启站点隐藏`
|
||||||
* [站点隐藏设置说明](./hidden/)
|
|
||||||

|

|
||||||
|
|
||||||
## 4、登录双重验证
|
点击查看 [站点隐藏功能详细使用说明](./hidden/)
|
||||||
|
|
||||||
|
|
||||||
|
### 4、登录双重验证
|
||||||
|
|
||||||
支持2FA双重认证
|
支持2FA双重认证
|
||||||
|
|
||||||

|

|
||||||
|
|
||||||
## 5、数据库自动备份【建议开启】
|
### 5、数据库自动备份【建议开启】
|
||||||
* [自动备份设置说明](../../use/backup/)
|
* [自动备份设置说明](../../use/backup/)
|
||||||
|
|
||||||
|
|
||||||
## 更多安全生产建议
|
## 二、安全生产建议
|
||||||
[安全生产建议](./suggest.md)
|
|
||||||
|
尽管`Cert`本身实现了很多安全特性,但`外部环境的安全`仍需要您来确保。
|
||||||
|
请`务必`遵循如下建议做好安全防护
|
||||||
|
|
||||||
|
* 请`务必`使用`HTTPS协议`访问本应用,避免被中间人攻击
|
||||||
|
* 请`务必`使用`web应用防火墙`防护本应用,防止XSS、SQL注入等攻击
|
||||||
|
* 请`务必`做好`服务器本身`的安全防护,防止数据库泄露
|
||||||
|
* 请`务必`做好[`数据备份`](../../use/backup/),避免数据丢失
|
||||||
|
* 建议开启[`站点隐藏`](./hidden/)功能
|
||||||
|
|
|
@ -1,10 +0,0 @@
|
||||||
# 安全生产建议
|
|
||||||
|
|
||||||
尽管`Cert`本身实现了很多安全特性,但`外部环境的安全`仍需要您来确保。
|
|
||||||
请`务必`遵循如下建议做好安全防护
|
|
||||||
|
|
||||||
* 请`务必`使用`HTTPS协议`访问本应用,避免被中间人攻击
|
|
||||||
* 请`务必`使用`web应用防火墙`防护本应用,防止XSS、SQL注入等攻击
|
|
||||||
* 请`务必`做好`服务器本身`的安全防护,防止数据库泄露
|
|
||||||
* 请`务必`做好[`数据备份`](../../use/backup/),避免数据丢失
|
|
||||||
* 建议开启[`站点隐藏`](./hidden/)功能
|
|
Before Width: | Height: | Size: 47 KiB After Width: | Height: | Size: 47 KiB |
Before Width: | Height: | Size: 165 KiB After Width: | Height: | Size: 165 KiB |
Loading…
Reference in New Issue