Skip to content

Server Configuration ​

Since 26.10 the "Server Configuration" page is a settings center: every runtime setting is grouped into nine domains, with search, instant validation, per-item restore-to-default and an unsaved-changes guard. Saved settings hot-apply — no restart needed.

Nine Domains ​

DomainKey settings (defaults in parentheses)
GeneralTimezone (Asia/Shanghai), UI language (zh / zhHant / wyw / en / ja / fr)
Player & ThemesPlayer theme (bili, 11 built-in), admin theme (md3), CDN toggle & base URL
DanmakuDanmaku max length (500), author max length (50), per-IP per-minute sends (10), render per-second cap (250), speed jitter (10%)
Subtitles & VideoSubtitle upload size cap (200 MB), preview size (200 KB)
Security & LoginSession minutes (120), admin entry path, trust proxy, auto-ban, anomaly & login-protection thresholds, security headers, CORS, debug mode
API & Rate LimitPoW toggle & difficulty (off / 4), global rate limit (off / 60 per 60s), API stats retention (1 day)
DatabaseReserved domain (no items yet)
Backup & UpdateAuto backup (off), interval (24h), keep count (10), contents (data / config)
Pluginsnpm registry, plugin registry (file:// local manifests supported)

UI Features ​

  • Search: type a keyword to jump to the matching item
  • Instant validation: frontend and backend share the same rules; errors show on blur
  • Unsaved-changes guard: a banner shows "N unsaved settings" with modified items highlighted; leaving with pending changes asks for confirmation
  • Per-item reset: each item has a restore-to-default button
  • Domain anchors: a domain navigation bar for quick jumps in the long form

Endpoints ​

MethodPathDescription
GET/api/admin/settingsDomain schema, domain order and current values
POST/api/admin/settings/validatePre-save validation ({values} → {errors})
POST/api/admin/settings/saveSave (full dot-path keys like security.sessionMinutes; unknown keys silently skipped; validation failure returns code: 2 + per-item errors)
GET/POST/api/admin/configLegacy endpoint, kept for compatibility

When Changes Apply ​

  • Security (e.g. trustProxy), API & rate limit (PoW, rate limit, danmaku, upload) and backup domains hot-apply or reschedule on save
  • Theme switches take effect immediately
  • The config.json structure is unchanged; existing scripts and backup flows are unaffected

MIT License · Made with ♥ by yangyang8002