mirror of
https://github.com/alexbelgium/hassio-addons.git
synced 2026-10-02 14:32:42 +02:00
* fix(calibre-web): trust the addon ip so ingress login works on 0.6.27 Calibre-web 0.6.27 added a trusted-source check for the reverse proxy auth header (cps/reverse_proxy_auth.py:is_trusted_proxy_source) and defaults config_reverse_proxy_trusted_ips to "127.0.0.1,::1". The ingress nginx binds its upstream socket to the addon ip (proxy_bind $server_addr, rootfs/etc/nginx/servers/ingress.conf:13), so calibre-web sees ::ffff:<addon ip> and discards X-WebAuth-User, leaving ingress at the login page. 80-configuration.sh now writes that address - plain and ipv4-mapped, plus the loopback forms - into config_reverse_proxy_trusted_ips next to the two settings it already applies. The update is tolerated failing because the column only exists after calibre-web 0.6.27+ has migrated app.db. Closes #3003 Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * fix: address CodeRabbit review --------- Co-authored-by: claude[bot] <41898282+claude[bot]@users.noreply.github.com> Co-authored-by: Claude Opus 5 <noreply@anthropic.com>