hosting

PUT /v1/sites/{siteId}/protection/hotlink

Replace a site's hotlink-protection rules.

Всички крайни точки в hosting

Упълномощаване

Изпратете API ключ като токен за носене. Ключът трябва да притежава разрешението sites.view; ключ без него се отхвърля с 403, а не с 404.

Този ендпойнт не изисква идентификатор на организация. Вашият ключ вече идентифицира организацията, към която принадлежи, и отговорът е ограничен до нея.

Опитайте

Заменете всичко в квадратни скоби със собствени стойности, а ключовия заместващ символ – с ключ от вашето табло за управление.

curl -X PUT https://api.zinndigital.com/v1/sites/{siteId}/protection/hotlink \
  -H "Authorization: Bearer zdk_live_…" \
  -H "Content-Type: application/json" \
  -d '{ "allow_direct": <boolean>, "allowed_hostnames": <string[]>, "extensions": <string[]> }'

Влязохте ли в профила си? API конзолата във вашето табло за управление попълва действителното идентификационно число на вашата организация и вашия собствен ключ и изпълнява заявката спрямо реалното API, за да можете да видите действителния отговор. Отворете този крайpoint в API конзолата

Детайли

Decides who may embed the site's files from another site. `allowed_hostnames` are the sites permitted to do so; `extensions` are the file types the rule covers; `redirect_url` is where a refused request is sent instead, and an empty string means the request is simply refused. A replace rather than a patch, for the same reason as the two block lists: the vendor endpoint replaces the set. Extensions are normalised before they are sent — a leading dot and capitals are stripped — so what the customer typed and what is enforced cannot differ. `404` for a site with no vendor hosting package. Requires `sites.view` and `sites.panel_access`.

Параметри

ИмеТипЗадължителноКакво представлява
siteId (path)UuidДаSite ID (UUIDv7).

Тяло на заявката

ИмеТипЗадължителноКакво представлява
allow_directbooleanДаWhether a request with no referrer — somebody opening the file's URL directly, and every search-engine image crawler — is allowed through.
allowed_hostnamesstring[]ДаThe sites permitted to embed these files. The customer's own domain is included by the vendor; list the others.
redirect_urlstringНеWhere a refused request is sent instead. Empty means the request is refused outright rather than redirected.
extensionsstring[]ДаThe file extensions the rule covers, without a leading dot. An empty array means the rule covers nothing and is therefore off.

Отговор

ИмеТипЗадължителноКакво представлява
countriesstring[]ДаThe countries in the rule, as ISO 3166-1 alpha-2 codes.
countries_allow_onlybooleanДа⛔ `true` means `countries` is an **allow**-list: only those countries reach the site. Its own field rather than a mode string, because inverting it inverts who can reach the cus…
blocked_addressesstring[]ДаThe blocked addresses and CIDR ranges, canonicalised — what is here is what is in force, not what was typed.
visitor_blocking_permittedbooleanДаWhether the package type permits blocking visitors at all. One flag governs both lists.
hotlink_configuredbooleanДаWhether any hotlink rule exists. ⛔ `false` means *no rules have been set up* — **not** "protection is on with no allowed hosts", which would read as a site blocking everybody.
hotlink_allow_directbooleanДаWhether a request with no referrer is allowed through. **Null** when the vendor did not state it — distinct from `false`, because a toggle rendered from an unknown lies about th…
hotlink_allowed_hostnamesstring[]ДаThe sites permitted to embed these files.
hotlink_redirect_urlstringДаWhere a refused request is sent instead, or `""` when it is simply refused.
hotlink_extensionsstring[]ДаThe file extensions the rule covers, normalised without a leading dot.
hotlink_permittedbooleanДаWhether the package type includes hotlink protection.
directoriesSiteProtectedDirectory[]ДаThe password-protected folders. ⛔ Read from a vendor field that documents `null` as *"the request could not complete"* — the opposite of "nothing is protected" — so an unreadabl…
password_protection_permittedbooleanДаWhether the package type includes password-protected directories.
malware_scan_permittedbooleanДаWhether the package type includes the vendor's malware scan — the capability behind `scanSite` on this deploy target.

Грешки, които този крайpoint може да върне

401 · 403 · 404 · 409 · 422 · 429 · 503