The username and password of your index
Every request to your Opensolr Index must send a username and a password (HTTP Basic Authentication). Your index always has them, from the moment it is created, so nobody reads or changes your data without them.
What a new index starts with
- Username:
opensolr - Password: your master API key. You see it on your account dashboard, as Master REST API Key, and under Account › API Keys.
Generating a new API key later does not change the password of the indexes you already have.
Change them
- Open the index in the Control Panel and click Security.
- Under Authentication, type the new Username and Password.
- Click Save.
The new credentials work in about 10 seconds. Then update every app, plugin and script that connects to this index.
- Use letters and digits only: any other character is removed when you save.
- The form does not show your credentials again later, so keep them somewhere safe.
Where the same credentials are used
- Every search and every update your apps send to the index.
- Downloading the backup files of the index.
- The password of the hosted search page, when you switch it on.
By API
The same change, from your own code: update_http_auth. The credentials of a new index, in more detail: Default HTTP Auth Credentials.
Security pages
- Security overview
- HTTP Basic Auth
- IP restriction
- Two-factor authentication