Auth: reemplazar Basic Auth por sesión PHP con login propio

- login.html: página de acceso con diseño Quiet Wealth (sin popup del browser)
- api/login.php: endpoint POST para iniciar sesión, GET ?action=logout para cerrarla
- auth.php: valida sesión PHP ($_SESSION) en lugar de HTTP Basic Auth
- ui.js: apiFetch() intercepta 401 y redirige a login.html automáticamente
- Todos los fetch() en dashboard, add y historial migrados a apiFetch()
- Eliminado docker/htpasswd y auth_basic de NGINX

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
Ricardo Monla
2026-06-03 16:25:50 -03:00
co-authored by Claude Sonnet 4.6
parent 1244235820
commit ead1bf8ffc
10 changed files with 176 additions and 19 deletions
+2 -2
View File
@@ -13,7 +13,7 @@ document.addEventListener('DOMContentLoaded', () => {
iptFecha.valueAsDate = new Date();
// Cargar categorías desde la API
fetch('api/movimientos.php')
apiFetch('api/movimientos.php')
.then(r => r.json())
.then(data => {
if (data.categorias) {
@@ -98,7 +98,7 @@ document.addEventListener('DOMContentLoaded', () => {
btnSave.innerHTML = 'Guardando...';
btnSave.disabled = true;
const r = await fetch('api/movimientos.php', {
const r = await apiFetch('api/movimientos.php', {
method: 'POST',
headers: { 'Content-Type': 'application/json' },
body: JSON.stringify(payload)