infrastructure/ansible/roles/gateway/files/nginx-fail2ban-jail.conf
Jake Howard 01c236e4e9
All checks were successful
/ terraform (push) Successful in 54s
/ ansible (push) Successful in 3m34s
Remove Nebula
I'm basically all in on Tailscale now
2024-09-01 20:21:29 +01:00

14 lines
519 B
Text

[nginx]
enabled = true
bantime = 600
findtime = 10
maxretry = 100
filter = nginx-tcp
logpath = /var/log/nginx/ips.log
port = http,https,8448
ignoreip = {{ wireguard.cidr }},{{ pve_hosts.internal_cidr }},{{ pve_hosts.internal_cidr_ipv6 }},{{ vps_hosts.values()|sort|join(",") }},{{ tailscale_cidr }}
[traefik]
enabled = true
port = http,https,8448
ignoreip = {{ wireguard.cidr }},{{ pve_hosts.internal_cidr }},{{ pve_hosts.internal_cidr_ipv6 }},{{ vps_hosts.values()|sort|join(",") }},{{ tailscale_cidr }}