Auth: reemplazar Basic Auth por sesión PHP con login propio

- login.html: página de acceso con diseño Quiet Wealth (sin popup del browser)
- api/login.php: endpoint POST para iniciar sesión, GET ?action=logout para cerrarla
- auth.php: valida sesión PHP ($_SESSION) en lugar de HTTP Basic Auth
- ui.js: apiFetch() intercepta 401 y redirige a login.html automáticamente
- Todos los fetch() en dashboard, add y historial migrados a apiFetch()
- Eliminado docker/htpasswd y auth_basic de NGINX

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
Ricardo Monla
2026-06-03 16:25:50 -03:00
co-authored by Claude Sonnet 4.6
parent 1244235820
commit ead1bf8ffc
10 changed files with 176 additions and 19 deletions
+2 -2
View File
@@ -8,7 +8,7 @@ async function cargarHistorial() {
const lista = document.getElementById('ui-lista');
try {
const r = await fetch('api/movimientos.php?view=historial');
const r = await apiFetch('api/movimientos.php?view=historial');
const data = await r.json();
loading.classList.add('hidden');
@@ -83,7 +83,7 @@ async function eliminar(id, titulo) {
if (!ok) return;
try {
const r = await fetch('api/movimientos.php', {
const r = await apiFetch('api/movimientos.php', {
method: 'DELETE',
headers: { 'Content-Type': 'application/json' },
body: JSON.stringify({ id: parseInt(id) })