Florent Daigniere
|
c701358c9d
|
simplify
|
2024-04-08 09:09:43 +02:00 |
|
Florent Daigniere
|
e0b64a9e54
|
simplify config with TLS, PORTS and PROXY_PROTOCOL
|
2024-04-06 18:00:57 +02:00 |
|
Florent Daigniere
|
6ee913502e
|
Improve auth-related logging
|
2023-05-06 17:37:16 +02:00 |
|
Dimitri Huisman
|
36069e3e06
|
Fix access to radicale
|
2023-03-28 20:01:43 +00:00 |
|
Dimitri Huisman
|
991dd647cb
|
nginx: fix proxy settings when PROXY protocol is used
Tested-By: Didier Raboud <odyx@raksha.ch>
|
2023-03-28 09:08:39 +02:00 |
|
Dimitri Huisman
|
ee1f0f94a3
|
Don't use the header when we don't need it.
|
2023-03-18 09:17:21 +00:00 |
|
Dimitri Huisman
|
25b9db4b00
|
Proxy endpoint was checking real client ip instead of proxy ip
for validating PROXY_AUTH_WHITELIST
|
2023-03-18 08:14:46 +00:00 |
|
Florent Daigniere
|
698f1f377c
|
Check https://attackshipsonfi.re/p/exploiting-cors-misconfigurations out
|
2023-03-16 08:12:46 +01:00 |
|
Florent Daigniere
|
8eb1542f64
|
Paranoia: drop the headers we don't use
|
2023-03-16 08:07:57 +01:00 |
|
Florent Daigniere
|
394c2fe22c
|
Document REAL_IP_HEADER and REAL_IP_FROM
Fix a security vulnerability whereby we were not clearing other headers
|
2021-08-28 10:03:18 +02:00 |
|
Florent Daigniere
|
6bba0cecfc
|
Strip the Forwarded header since nothing is compatible with it yet
|
2021-08-28 09:02:52 +02:00 |
|
Thomas Sänger
|
2c7d1d2f71
|
use HTTP/1.1 for proxyied connections
|
2019-07-11 22:38:34 +02:00 |
|
kaiyou
|
04278b6cbf
|
Pass the full host to the backend, fixes #372
|
2018-02-06 18:56:41 +01:00 |
|
kaiyou
|
2dfc91ac4d
|
Use a map for passing x-forwarded-proto along
|
2017-12-04 22:19:17 +01:00 |
|
kaiyou
|
a4f46ced49
|
Properly use x-forwarded-proto with redirects in the webui, related to #347
|
2017-12-04 21:16:08 +01:00 |
|