Compare commits
No commits in common. "87fcad3add4fd1ae8cf5be662cde12218fd8ef22" and "9f90985e5437e5b3834a09b71bb3affe0d2806fd" have entirely different histories.
87fcad3add
...
9f90985e54
6 changed files with 2 additions and 7 deletions
|
@ -40,10 +40,10 @@ table inet filter {
|
||||||
# Prevent DDoS
|
# Prevent DDoS
|
||||||
# Rate limiting
|
# Rate limiting
|
||||||
meta nfproto ipv4 meter ratelimit4 \
|
meta nfproto ipv4 meter ratelimit4 \
|
||||||
{ ip saddr limit rate over 75/second burst 15 packets } \
|
{ ip saddr limit rate over 50/second burst 10 packets } \
|
||||||
add @blackhole_ipv4 { ip saddr }
|
add @blackhole_ipv4 { ip saddr }
|
||||||
meta nfproto ipv6 meter ratelimit6 \
|
meta nfproto ipv6 meter ratelimit6 \
|
||||||
{ ip6 saddr limit rate over 75/second burst 15 packets } \
|
{ ip6 saddr limit rate over 50/second burst 10 packets } \
|
||||||
add @blackhole_ipv6 { ip6 saddr }
|
add @blackhole_ipv6 { ip6 saddr }
|
||||||
# Max concurrent connections
|
# Max concurrent connections
|
||||||
meta nfproto ipv4 meter connlimit4 \
|
meta nfproto ipv4 meter connlimit4 \
|
||||||
|
|
|
@ -12,6 +12,5 @@ server {
|
||||||
proxy_pass http://127.0.0.1:{{ ports['hedgedoc'] }};
|
proxy_pass http://127.0.0.1:{{ ports['hedgedoc'] }};
|
||||||
|
|
||||||
include /etc/nginx/snippets/websocket.conf;
|
include /etc/nginx/snippets/websocket.conf;
|
||||||
include /etc/nginx/snippets/proxy.conf;
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
|
@ -8,6 +8,5 @@ server {
|
||||||
proxy_pass https://127.0.0.1:{{ ports['mailserver_jmap'] }};
|
proxy_pass https://127.0.0.1:{{ ports['mailserver_jmap'] }};
|
||||||
|
|
||||||
include /etc/nginx/snippets/websocket.conf;
|
include /etc/nginx/snippets/websocket.conf;
|
||||||
include /etc/nginx/snippets/proxy.conf;
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
|
@ -12,6 +12,5 @@ server {
|
||||||
proxy_set_header X-Client-Port $remote_port;
|
proxy_set_header X-Client-Port $remote_port;
|
||||||
proxy_set_header X-SSL-Cert $ssl_client_cert;
|
proxy_set_header X-SSL-Cert $ssl_client_cert;
|
||||||
include /etc/nginx/snippets/websocket.conf;
|
include /etc/nginx/snippets/websocket.conf;
|
||||||
include /etc/nginx/snippets/proxy.conf;
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
|
@ -8,6 +8,5 @@ server {
|
||||||
proxy_pass http://127.0.0.1:{{ ports['uptime_kuma'] }};
|
proxy_pass http://127.0.0.1:{{ ports['uptime_kuma'] }};
|
||||||
|
|
||||||
include /etc/nginx/snippets/websocket.conf;
|
include /etc/nginx/snippets/websocket.conf;
|
||||||
include /etc/nginx/snippets/proxy.conf;
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
|
@ -14,6 +14,5 @@ server {
|
||||||
proxy_pass http://vaultwarden;
|
proxy_pass http://vaultwarden;
|
||||||
|
|
||||||
include /etc/nginx/snippets/websocket.conf;
|
include /etc/nginx/snippets/websocket.conf;
|
||||||
include /etc/nginx/snippets/proxy.conf;
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue