POST Update Session Config endpoint.
Endpoint
POST
/web/v1/partner/security/sessions/config WEBAuthentication
- Chain: WEB
- JWT Token: true
- API Key: false
- Permissions: []
- Secure Channel: REQUIRED
Rate Limit
120 requests per 60 seconds.
Headers
Frontend Headers
| Header | Required | Description |
|---|---|---|
| X-LOCALE | Yes | 用户的 locale |
| Accept-Language | No | 语言偏好 |
Cloudflare Headers
| Header | Required | Description |
|---|---|---|
| CF-Connecting-IP | Yes | Client IP from Cloudflare |
| CF-IPCountry | Yes | Client country code |
| CF-Ray | Yes | Cloudflare Ray ID |
| CF-Visitor | Yes | Visitor scheme |
| X-Real-IP | Yes | Real client IP |
Nginx Headers
| Header | Required | Description |
|---|---|---|
| X-PORTAL-ACCESS-CODE | Yes | Portal access code |
| X-Real-IP | Yes | 客户端真实 IP |
| X-Forwarded-For | Yes | 代理链 |
| X-Forwarded-Proto | Yes | 协议 |
Request Parameters
Body (JSON)
| Field | Type | Required | Description |
|---|---|---|---|
| ssoEnabled | Boolean | No | Whether SSO is enabled |
| maxSessions | Integer | No | Maximum concurrent sessions (1-5) |
Response
200 OK
| Field | Type | Description |
|---|---|---|
| accountBizId | String | Account business ID |
| ssoEnabled | Boolean | Whether SSO is enabled |
| maxSessions | Integer | Maximum concurrent sessions |
| passwordChangedAt | Instant | Last password change timestamp |
| lastLoginAt | Instant | Last login timestamp |
| lastLoginIp | String | Last login IP (masked) |