memos/server
boojack 20c19ef82d feat(storage): add insecure_skip_tls_verify option for S3
Adds an opt-in toggle to skip TLS certificate verification when connecting
to the S3 endpoint, for self-hosted S3-compatible backends (e.g. rustfs,
MinIO) that use self-signed certificates. Exposed in both the store/API
protos and the storage settings UI, mirroring the existing use_path_style
toggle. When enabled, the AWS client uses an HTTP transport with
InsecureSkipVerify; default behavior is unchanged.

This governs backend-initiated S3 calls (uploads, deletes, thumbnails, and
image/document streaming). Video/audio playback redirects the browser to a
presigned URL, so that path still requires the browser to trust the cert.

Closes #6039
2026-06-23 00:04:54 +08:00
..
auth fix(auth): harden authorization and username validation (#5890) 2026-04-25 21:24:16 +08:00
notification feat(notification): add smtp email settings 2026-05-01 18:48:21 +08:00
router feat(storage): add insecure_skip_tls_verify option for S3 2026-06-23 00:04:54 +08:00
runner fix(s3presign): preserve motion media payload 2026-05-09 22:51:56 +08:00
cors.go fix(cors): open API to any origin for token auth, keep cookies same-origin 2026-06-14 23:20:34 +08:00
cors_test.go fix(cors): open API to any origin for token auth, keep cookies same-origin 2026-06-14 23:20:34 +08:00
server.go feat: add OpenAPI-driven MCP support (#6026) 2026-06-09 09:16:50 +08:00