Files
Gnuboard7/lang/en/settings.php
T
HeuJung b6c5e1f323 feat(core): 리버스 프록시 신뢰 설정 지원 및 미설정 진단
TLS 가 앞단에서 종단되고 앱에는 HTTP 로 전달되는 구성에서 X-Forwarded-* 가 전부
무시되어 화면 백지·IP 왜곡·webhook 403 이 함께 발생했다. 코어에 신뢰 프록시 설정
지점이 아예 없던 것이 원인이다.

- config/trustedproxy.php 로 내장 TrustProxies 미들웨어에 값을 공급한다.
 bootstrap/app.php 는 건드리지 않는다 — withMiddleware 클로저는 .env 로드 전에
 평가되어 env 가 항상 null 이 되는 조용한 no-op 이다.
- 판정은 App\Support\TrustedProxyDiagnostic 단일 SSoT 에서 계산하고 대시보드
 알림·환경설정 고급 탭·설치 마법사·trusted-proxy:status 네 면이 소비한다.
 판정식은 "HTTPS 인식 실패" 가 아니라 "X-Forwarded-* 수신 중 AND 신뢰 프록시
 미설정" 이다 — HTTP 전용 사이트가 프록시 뒤에 있으면 화면은 정상인 채로
 나머지만 조용히 어긋나기 때문이다.
- 값 편집 UI 와 쓰기 엔드포인트는 두지 않는다(잠금 역설 + XFF 위조 경로).
- 혼합 콘텐츠 차단을 부트스트랩 폴백의 별도 사유로 가른다. 새로고침으로 낫지
 않으므로 버튼을 렌더하지 않고, 원인·조치는 콘솔로 운영자에게 보낸다.
- 대시보드 알림을 심각도로 배치한다 — warning 은 상단 배너, 그 외는 하단 카드.
 같은 알림이 두 곳에 뜨지 않으며, 여러 건은 간격을 두고 쌓인다.

공개 이슈: (@lyg-kaban 제보)
2026-08-28 18:09:27 +09:00

225 lines
12 KiB
PHP

<?php
return [
// Settings related messages
'fetch_success' => 'Settings retrieved successfully.',
'fetch_failed' => 'Failed to retrieve settings.',
'save_success' => 'Settings saved successfully.',
'save_failed' => 'Failed to save settings.',
'update_success' => 'Settings updated successfully.',
'update_failed' => 'Failed to update settings.',
'delete_success' => 'Settings deleted successfully.',
'delete_failed' => 'Failed to delete settings.',
'save_error' => 'An error occurred while saving settings.',
'update_error' => 'An error occurred while updating settings.',
'cache_clear_success' => 'Cache cleared successfully.',
'cache_clear_failed' => 'Failed to clear cache.',
'cache_clear_error' => 'An error occurred while clearing cache.',
'optimize_success' => 'System optimized successfully.',
'optimize_failed' => 'Failed to optimize system.',
'optimize_error' => 'An error occurred while optimizing system.',
'backup_success' => 'Database backup started successfully.',
'backup_failed' => 'Failed to start database backup.',
'backup_error' => 'An error occurred while backing up database.',
'database_backup_unavailable' => 'Database backup is not available yet. Use the settings backup feature to back up your settings.',
'backup_path_required' => 'Please enter a backup path.',
'restore_success' => 'Settings restored successfully.',
'restore_failed' => 'Failed to restore settings.',
'restore_error' => 'An error occurred while restoring settings.',
'save_individual_failed' => 'Settings save failed: :error',
// App key related messages
'invalid_password' => 'Password does not match.',
'password_required' => 'Please enter your password.',
'app_key_regenerated' => 'Application key has been successfully regenerated.',
'app_key_regenerate_failed' => 'Failed to regenerate application key.',
'app_key_regenerate_warning' => 'Regenerating the key will invalidate all sessions. Do you want to continue?',
// System info related
'seconds' => 's',
// Driver labels (resolved per active language pack by DriverRegistryService)
'drivers' => [
'storage' => [
'local' => 'Local',
's3' => 'Amazon S3',
],
'public_asset' => [
'none' => 'Disabled (streaming)',
'public' => 'Public disk',
's3' => 'Amazon S3',
],
'cache' => [
'file' => 'File',
'redis' => 'Redis',
],
'session' => [
'file' => 'File',
'database' => 'Database',
'redis' => 'Redis',
],
'queue' => [
'sync' => 'Sync',
'database' => 'Database',
'redis' => 'Redis',
],
'log' => [
'single' => 'Single File',
'daily' => 'Daily File',
],
'websocket' => [
'reverb' => 'Laravel Reverb',
],
'mail' => [
'smtp' => 'SMTP',
'mailgun' => 'Mailgun',
'ses' => 'SES (Amazon)',
],
'search' => [
'mysql-fulltext' => 'MySQL Full-Text',
],
],
// Driver connection test messages
'driver_test_success' => 'All driver connection tests passed.',
'driver_test_partial' => 'Some driver connection tests failed.',
'driver_test_error' => 'An error occurred while testing driver connections.',
'unknown_driver' => 'Unknown driver.',
// Outbound proxy connection test messages
'outbound_proxy_test_success' => 'Connected through the proxy. External services will see this IP address.',
'outbound_proxy_test_failed' => 'Could not connect through the proxy. Check the address and the proxy server status.',
'outbound_proxy_test_invalid_url' => 'The proxy address format is invalid.',
'outbound_proxy_test_no_lookup_url' => 'No egress IP lookup target is configured, so the address could not be determined.',
// S3 test messages
's3_test_success' => 'Successfully connected to S3 bucket.',
's3_test_failed' => 'Failed to connect to S3 bucket.',
's3_missing_config' => 'S3 configuration is missing. (bucket, region, access key, secret key)',
's3_sdk_missing' => 'AWS SDK is not installed.',
's3_adapter_missing' => 'S3 storage adapter (league/flysystem-aws-s3-v3) is not installed.',
's3_bucket_not_found' => 'S3 bucket not found.',
's3_access_denied' => 'Access to S3 bucket was denied.',
's3_invalid_credentials' => 'S3 credentials are invalid.',
// Redis test messages
'redis_test_success' => 'Successfully connected to Redis server.',
'redis_test_failed' => 'Failed to connect to Redis server.',
'redis_extension_missing' => 'Redis PHP extension is not installed.',
'redis_connection_failed' => 'Could not connect to Redis server.',
'redis_auth_failed' => 'Redis authentication failed.',
'redis_ping_failed' => 'No response from Redis PING.',
// Memcached test messages
'memcached_test_success' => 'Successfully connected to Memcached server.',
'memcached_test_failed' => 'Failed to connect to Memcached server.',
'memcached_extension_missing' => 'Memcached PHP extension is not installed.',
'memcached_connection_failed' => 'Could not connect to Memcached server.',
// Websocket test messages
'websocket_test_success' => 'Successfully connected to Websocket server.',
'websocket_test_failed' => 'Failed to connect to Websocket server.',
'websocket_server_test_failed' => 'Failed to connect to the Websocket server-side (backend broadcast) endpoint. The client endpoint is reachable.',
'driver_unusable_s3_adapter' => 'S3 storage adapter (league/flysystem-aws-s3-v3) is not installed.',
'driver_unusable_redis_client' => 'Neither the phpredis extension nor the predis library is available.',
'driver_unusable_memcached_extension' => 'The memcached PHP extension is not installed.',
'websocket_invalid_host' => 'The Websocket host setting is invalid. Enter the address only — credentials (@) and protocols other than http/https are not allowed.',
'websocket_connection_refused' => 'Could not connect to Websocket server. Please check if the server is running.',
// Test mail related messages
'invalid_email' => 'Invalid email address.',
'test_mail_subject' => ':app_name Test Mail',
'test_mail_body' => 'This is a test email from Gnuboard7. If you received this email, your mail settings are configured correctly.',
'test_mail_sent' => 'Test email sent successfully.',
'test_mail_failed' => 'Failed to send test email.',
'test_mail_error' => 'An error occurred while sending the test email.',
// Core update related messages
'core_update' => [
'check_success' => 'Update check completed.',
'check_failed' => 'Update check failed.',
'update_available' => 'A new update is available.',
'no_update' => 'You are on the latest version.',
'maintenance_mode_active' => 'System is under maintenance. Please try again later.',
'invalid_github_url' => 'Invalid GitHub repository URL.',
'download_failed' => 'Failed to download version :version.',
'zip_extract_failed' => 'Failed to extract ZIP file.',
'invalid_package' => 'Downloaded package is invalid.',
'invalid_package_not_g7' => 'The specified directory is not a Gnuboard7 project. config/app.php file with version setting is required.',
'composer_failed' => 'composer install failed.',
'pending_path_create_failed' => 'Failed to create pending directory (:path): :error',
'pending_path_not_writable' => 'Pending directory (:path) is not writable.',
'downloading' => 'Downloading update...',
'extracting' => 'Extracting...',
'validating' => 'Validating package...',
'running_composer' => 'Running composer install...',
'step_check' => 'Checking for updates...',
'step_validate_pending' => 'Validating environment...',
'step_maintenance' => 'Enabling maintenance mode...',
'step_download' => 'Downloading...',
'step_backup' => 'Creating backup...',
'step_apply' => 'Applying files...',
'step_composer' => 'Running composer install...',
'step_migration' => 'Running migrations...',
'step_upgrade' => 'Running upgrade steps...',
'step_composer_prod' => 'Running composer install in production directory...',
'step_cleanup' => 'Cleaning up...',
// File apply mode summary (Step 7)
'apply_mode_incremental' => 'File apply: only files actually changed by the core were applied (:added new, :changed changed). All other files were left untouched as-is.',
'apply_mode_incremental_prune_hint' => 'To also remove files deleted in the new version, re-run with the `--prune` option or use `php artisan hotfix:rollback-stale-files --prune`.',
'apply_mode_prune' => 'File apply: full overwrite plus cleanup of removed files was performed (--prune).',
'apply_mode_fallback' => 'File apply: no backup available, so incremental apply was skipped and a full overwrite was performed. To preserve custom files, keep the backup enabled on future updates.',
// GitHub API error messages
'github_url_not_configured' => 'GitHub repository URL is not configured.',
'github_api_failed' => 'Unable to connect to GitHub API.',
'github_token_required' => 'This is a private repository. Please configure a GitHub access token.',
'github_token_invalid' => 'GitHub access token is invalid or has insufficient permissions. (HTTP :status — :message)',
'github_repo_not_found' => 'GitHub repository not found. (HTTP :status — :message)',
'github_repo_not_found_no_token' => 'GitHub repository not found. If the repository is private, please configure an access token. (HTTP :status — :message)',
'github_api_error' => 'GitHub API error occurred. (HTTP :status — :message)',
'no_releases_found' => 'No releases found in the GitHub repository. (HTTP :status — :message)',
// Log messages
'log_api_call_failed' => 'Core update: GitHub API call failed',
'log_auth_failed' => 'Core update: GitHub authentication failed',
'log_not_found' => 'Core update: GitHub repository/release not found',
'log_unexpected_status' => 'Core update: Unexpected HTTP status code',
'log_version_check_error' => 'Core update: Error checking latest version',
'unknown_error' => 'An unknown error occurred.',
// System requirements
'system_requirements_failed' => 'System requirements are not met:',
'no_extract_method_available' => 'No archive extraction method available. Requires one of: PHP zip extension (ZipArchive) or unzip command (Linux). You can also use the --source option for manual update.',
'manual_update_guide' => 'Manual update: Download the release ZIP from GitHub, extract it, then run: php artisan core:update --source=/path/to/extracted',
// Extraction fallback chain
'archive_url_not_found' => ':type archive URL not found. Trying next method.',
'extracting_with' => 'Extracting with :method...',
'extract_empty' => 'Extracted directory is empty.',
'extract_fallback' => ':method failed: :error — Trying next method.',
'all_extract_methods_failed' => 'All archive extraction methods failed. Try manual update with --source option.',
'unzip_command_failed' => 'unzip command failed (exit code: :code). :output',
'zip_file_not_found' => 'Specified ZIP file not found: :path',
'source_vendor_missing' => 'No vendor directory in source. composer install may not have been executed.',
'composer_failed_with_output' => 'composer install failed.:output',
],
/*
|--------------------------------------------------------------------------
| Trusted Proxy Diagnostic (#124)
|--------------------------------------------------------------------------
|
| The value is edited in .env only — the screen shows a read-only diagnostic.
|
*/
'trusted_proxy' => [
'alert_title' => 'Trusted proxies are not configured',
'alert_message' => 'Proxy headers (:headers) are being received but no trusted proxy is configured, so every visitor is recorded with the same address (:ip). Set TRUSTED_PROXIES in .env. Details: https://github.com/gnuboard/g7/blob/main/docs/backend/reverse-proxy.md',
],
];