80320ae698
Close audit findings: anti-spoof client IP for login rate limit, JWT/CORS enforce on startup, SSH host-key verification and sudo via stdin, optional WinRM HTTPS, SSE httpOnly cookie auth, ingest body limit, ILIKE escaping, and HMAC API key hashing with legacy SHA-256 fallback.
Frontend (Vue 3 + Vite)
Статус: не реализован. См. docs/work-plan.md фаза 1.
Планируется:
- Problems, Events, Hosts, Dashboards
- SSE live-лента
- Auth JWT