diff --git a/src/WebApi_limit.cpp b/src/WebApi_limit.cpp index 33bcd407..00880c31 100644 --- a/src/WebApi_limit.cpp +++ b/src/WebApi_limit.cpp @@ -6,6 +6,7 @@ #include "ArduinoJson.h" #include "AsyncJson.h" #include "Hoymiles.h" +#include "WebApi.h" void WebApiLimitClass::init(AsyncWebServer* server) { @@ -54,6 +55,10 @@ void WebApiLimitClass::onLimitStatus(AsyncWebServerRequest* request) void WebApiLimitClass::onLimitPost(AsyncWebServerRequest* request) { + if (!WebApi.checkCredentials(request)) { + return; + } + AsyncJsonResponse* response = new AsyncJsonResponse(); JsonObject retMsg = response->getRoot(); retMsg[F("type")] = F("warning"); diff --git a/src/WebApi_power.cpp b/src/WebApi_power.cpp index 8e3c2bc8..413bc0fd 100644 --- a/src/WebApi_power.cpp +++ b/src/WebApi_power.cpp @@ -6,6 +6,7 @@ #include "ArduinoJson.h" #include "AsyncJson.h" #include "Hoymiles.h" +#include "WebApi.h" void WebApiPowerClass::init(AsyncWebServer* server) { @@ -47,6 +48,10 @@ void WebApiPowerClass::onPowerStatus(AsyncWebServerRequest* request) void WebApiPowerClass::onPowerPost(AsyncWebServerRequest* request) { + if (!WebApi.checkCredentials(request)) { + return; + } + AsyncJsonResponse* response = new AsyncJsonResponse(); JsonObject retMsg = response->getRoot(); retMsg[F("type")] = F("warning"); diff --git a/webapp/src/views/HomeView.vue b/webapp/src/views/HomeView.vue index 60d655a4..56239e41 100644 --- a/webapp/src/views/HomeView.vue +++ b/webapp/src/views/HomeView.vue @@ -50,7 +50,7 @@