用加载屏幕替换校验页面调试 UI - 使用现有的加载WithOrg组件 - 在OTK验证期间显示优雅的加载动画 - 用自动重定向显示成功/错误消息 - 删除所有调试信息面板
添加 Redis 复制时滞重试逻辑 - OTK 和 *** 现在读取重试 5 次, 延迟2秒 - 处理主对奴隶复制延迟 - 防止错误会话 - 未发现错误
Simplify validate flow - Let new cookie overwrite old one - Remove unnecessary cookie clear logic - useUserInfo skips redirect on validate page
Implement Redis-based user-info with sliding expiration - Read user data directly from Redis instead of calling SecurityService - Implement sliding session expiration (reset TTL on each read) - Redirect to login site if session expired - Enhanced logging for debugging
Update logout flow to use direct Redis access
Logout Flow Changes: - /logout (page): DELETE Redis session via /api/logout, forward to login/logout - /api/logout: Direct Redis DELETE (no SecurityService call...
FORCE REBUILD: Add extensive logging to /api/validate (Direct Redis)
Critical Change: - This endpoint does NOT call SecurityService - It queries Redis DIRECTLY for OTK validation - Extensive logging added to trace every step New...
Make *** cookie client-accessible & validate OTK directly in Next.js
Major Simplifications: - *** cookie is now client-accessible (httpOnly: false) - Both Next.js and Java can read the cookie directly - Cookie expires in 30 minut...
Fix build error and change *** length to 128 chars
Build Fixes: - Escape apostrophe in validate page (') - Add searchParams dependency to useEffect *** Length Change: - Update expected *** length from 512 ...
Add comprehensive debugging UI to validate page
- Show component render count and validation attempt count - Display OTK information and length validation - Show retrieved *** ID (512 chars) when successful -...
Fix OTK validation duplicate calls issue
- Add useRef to track validation attempts - Prevent duplicate API calls (critical for one-time keys) - Change useEffect deps to empty array (run once on mount) ...
Update OTK validation to use new *** session model
- Extract ***Id from JSON response body (not Set-Cookie header) - SecurityService now returns { success, message, ***Id } - Set *** cookie with 64-char GUID fro...
Add no-cache headers and extensive logging to debug user-info loading
Always call API to fetch user info, don't check HttpOnly cookie client-side
Replace RoleRightType.valueOf with manual lookup of static instances
Use property access instead of method calls for RoleRightType and ServiceType
Extract session ID from upstream and set *** cookie explicitly for internal domain
Update cookie name from KAMOSESH to *** throughout kamo-internal
Implement Redis read/write splitting - writes to master (10.8.0.1), reads from replica
Add checkbox linking feature for preferred names to legal names in profile settings
Remove webpack CSS override that was breaking Tailwind CSS processing
Add missing autoprefixer to PostCSS config - fixes CSS rendering issues
Replace Tailwind v4 with v3 - remove @tailwindcss/postcss, add tailwindcss v3
Fix PostCSS config to use standard Tailwind plugin instead of v4 plugin
Add K2M1 TCP connectivity pre-check with retries
Before attempting kubectl operations, verify TCP connection to 10.8.2.1:6443 - Tests TCP connection 3 times with 5 second delays between attempts - Provides cle...
Add K2M1 secret validation and connection diagnostics
- Validate K2M1_KUBECONFIG_B64 secret exists and is not empty - Show kubeconfig file size for debugging - Add cluster-info test with timeout before deployment -...
Simplify K2M1 workflow to exactly match kamo-login
Removed all continue-on-error flags and debugging code. K2M1 deployment now uses the exact same approach as kamo-login which works. Both servers (K1M1 and K2M1)...
Make K2M1 deployment steps continue-on-error
K2M1 cluster at 10.8.2.1 is not reachable (ping and port 6443 timeout). Adding continue-on-error to all K2M1 steps so builds succeed when K1M1 deploys successfu...
添加 K2M1 连接和 kubeconfig 调试
- 在K2M1部署前添加连接测试(平面和端口检查) - 增加K2M1 KUBECONFIG B64秘密的验证检查 - 添加 kubeconfig 文件大小验证 - 这些检查有助于诊断K2M1部署失败的原因
修复 Redis 连接和 k8s 部署配置
- 更新工作流程以使用 k8s 目录文件而不是内置的 YAML - 调整配置图结构,以使用单个嵌入式 var 密钥进行适当的嵌入 - 从部署中去除不必要的.env容量挂载 - 修复 Redis 连接以使用 QQ - 修改配置图名称一致性(kamoweb内部配置)