mbs-panel/.env.example
savsis 84ffb8363d security: reject weak/default admin panel passwords at startup
Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-09-10 18:14:05 +05:00

33 lines
1.2 KiB
Text

# Copy this to .env and fill in real values. Never commit .env.
# From @BotFather
BOT_TOKEN=123456789:AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
BOT_USERNAME=YourBot_robot
# Telegram user IDs allowed into the bot's admin menu and the web panel, comma-separated
ADMIN_IDS=111111111,222222222
# Web panel login password — must be a real random string, min 8 chars
# (panel refuses to start on "change-me"/"admin"/etc). Generate one: openssl rand -base64 12
# Change it any time with: mbs pass
ADMIN_PANEL_PASSWORD=
# Domains — point all three A records at this server's IP (see README)
PANEL_DOMAIN=panel.example.com
SUB_DOMAIN=sub.example.com
SITE_DOMAIN=example.com
# Reality identity for the local node (this same box). Generate with:
# /usr/local/bin/xray x25519
# XRAY_PUBLIC_KEY is the "Password (PublicKey)" line; keep the matching
# private key only inside /usr/local/etc/xray/config.json (never here).
XRAY_PUBLIC_KEY=
REALITY_SNI=www.wildberries.ru
# Any 16-hex-char string per transport, e.g.: openssl rand -hex 8
XRAY_SHORT_ID_TCP=
XRAY_SHORT_ID_GRPC=
XRAY_SHORT_ID_XHTTP=
# Public hostname clients connect to for the local node (A record -> this server)
DE1_ADDRESS=de1.example.com