Skip to content

Quant.Infra.Net.Pro v1.8.1

Choose a tag to compare

@memoryfraction memoryfraction released this 28 Sep 22:22

English

Fixes the "not private" HTTPS warning and the update-check failure from v1.8.0.

  • Local CA + CA-signed HTTPS certificate. Replaces the plain self-signed certificate with a
    local Certificate Authority that is trusted once (a one-time step per machine) and then signs the
    server certificate. If you later change Urls or the Schwab OAuth redirect URI to a different
    host, the server certificate is automatically re-issued and signed by the same, already-trusted
    CA — no second trust step required. If CA generation fails for any reason, the app falls back to
    the old plain self-signed certificate so HTTPS never blocks startup.
  • HTTP to HTTPS redirect. The app now recognizes X-Forwarded-Proto from reverse proxies
    (nginx, Apache) and forces any plain HTTP request to redirect to HTTPS, fixing the case where the
    address bar kept showing http:// even when the app was configured for https://.
  • Fixed: "The update check failed" on self-contained builds. Self-contained Release builds trim
    unused reflection metadata, which broke JSON parsing of the GitHub Releases API response and made
    the /update page always report a failed check. Update checking now works correctly in the
    published Setup.exe / AppImage builds.

中文

修复 v1.8.0 中的 HTTPS"不安全"警告与更新检查失败问题。

  • 本地 CA + CA 签名 HTTPS 证书。 用本地证书颁发机构(CA)替换纯自签名证书;CA 只需在每台
    机器上信任一次(一次性操作),之后由它签发服务器证书。之后如果修改 Urls 或 Schwab OAuth
    重定向地址到不同的主机,服务器证书会自动用同一个已被信任的 CA 重新签发,不需要第二次信任
    操作。如果 CA 生成因任何原因失败,会自动降级为旧的纯自签名证书,确保 HTTPS 问题不会阻塞启动。
  • HTTP 自动跳转 HTTPS。 应用现在能识别反向代理(nginx、Apache)传来的 X-Forwarded-Proto
    头,并强制把普通 HTTP 请求重定向到 HTTPS,修复了即使配置了 https:// 地址栏仍然显示
    http:// 的问题。
  • 修复:self-contained 构建中"The update check failed"。 self-contained 的 Release 构建会
    裁剪未使用的反射元数据,导致解析 GitHub Releases API 响应的 JSON 时失败,/update 页面因此
    总是报告检查失败。现在已发布的 Setup.exe / AppImage 构建中更新检查功能正常工作。