<sectiondata-admin-panel="security"class="hidden settings-panel"><h2>Security, health & updates</h2><divclass="role-callout"><strong>Configuration safety</strong><span>Site Gateway validates generated Caddy configuration before every reload and retains the active configuration when validation fails.</span><strong>Container updates</strong><span>Updates are installed by pulling a new pinned image. Create a backup before changing versions.</span></div><sectionclass="support-panel"><div><pclass="eyebrow">Troubleshooting & support</p><h3>Gateway diagnostics</h3><pclass="muted">Run checks and download a redacted report when you need to investigate a gateway issue.</p></div><divclass="row-actions"><buttonid="download-support"class="button secondary admin-only">Download support report</button></div><pclass="muted support-note">The report includes version, configuration health, certificate readiness, upstream checks, and recent events. Passwords, private keys, session secrets, cookies, and certificate contents are excluded.</p></section><formid="health-settings-form"class="settings-form"><label>Renewing-soon warning<inputname="warningDays"type="number"min="8"max="120"value="30"><small>Days remaining before a certificate is highlighted.</small></label><label>Critical warning<inputname="criticalDays"type="number"min="1"max="119"value="7"><small>Must be lower than the renewing-soon threshold.</small></label><label>Stale health data<inputname="staleMinutes"type="number"min="2"max="1440"value="10"><small>Minutes before a displayed check is considered old.</small></label><divclass="dialog-actions"><buttonclass="button primary">Save health settings</button></div></form></section>
<sectiondata-admin-panel="danger"class="hidden settings-panel danger-zone"><h2>Danger Zone</h2><pclass="muted">These actions can permanently remove Site Gateway data. Review each warning carefully before continuing.</p><divclass="danger-card"><pclass="eyebrow">Restore defaults</p><h3>Reset gateway preferences</h3><p>Restore default site behavior, backup scheduling, certificate thresholds, and interface preferences. Your users, routes, certificates, logs, and backups remain intact.</p><buttonid="restore-defaults"class="button secondary">Restore default settings</button></div><divclass="danger-card destructive"><pclass="eyebrow">Permanent action</p><h3>Factory reset</h3><p>Deletes all Site Gateway data under <code>/data</code>, including users, routes, certificates, logs, backups, and settings. Docker-mounted files outside <code>/data</code> are not affected. The container restarts at first-install setup.</p><formid="factory-reset-form"class="danger-form"><label>Administrator username<inputname="username"autocomplete="username"required></label><label>Administrator password<inputname="password"type="password"autocomplete="current-password"required></label><label>Type <strong>FACTORY RESET</strong> to confirm<inputname="confirmation"requiredautocomplete="off"></label><pid="factory-reset-error"class="error"></p><divclass="danger-actions"><buttonclass="button secondary"type="button"id="factory-reset-cancel">Cancel</button><buttonclass="button danger"type="submit">Erase all data and reset</button></div></form></div></section>
<sectionid="streaming-view"class="feature-view hidden"><divid="stream-list"class="site-grid"></div><sectionid="stream-empty"class="empty hidden"><divclass="empty-icon">⇄</div><h2>Create your first streaming host</h2><p>Forward raw TCP or UDP traffic on a specific port straight to another host and port — no domain, no HTTPS.</p><buttonclass="button primary create-trigger">Create a streaming host</button></section></section>
<sectionid="redirects-view"class="feature-view hidden"><divid="redirect-list"class="site-grid"></div><sectionid="redirect-empty"class="empty hidden"><divclass="empty-icon">↪</div><h2>Create your first redirect</h2><p>Send an old domain to a new destination while preserving its path if you choose.</p><buttonclass="button primary create-trigger">Create a redirect host</button></section></section>
<articledata-doc="advanced caddy custom locations headers compression health upstream tls"><pclass="eyebrow">Advanced proxy settings</p><h2>Start simple, expand only when needed</h2><p>Custom Locations route selected paths to different upstreams. Request headers are sent upstream; response headers are returned to visitors. Health checks accept individual codes or ranges. Unverified upstream TLS and custom Caddy configuration are expert controls—change one item at a time and rely on validation feedback.</p></article>
<articledata-doc="troubleshooting dns ports certificate caddy nginx conflict"><pclass="eyebrow">Troubleshooting</p><h2>When HTTPS is not detected</h2><p>Confirm public DNS points to this server, router forwarding reaches ports 80 and 443, and NGINX Proxy Manager or another service is not still using those ports. Then review Certificates and Logs → Gateway events. Site Gateway cannot request a public certificate while another gateway receives the challenge.</p></article>
</div></div><pid="doc-empty"class="quiet-state hidden">No guide matched that search.</p></section>
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.