mirror of
https://github.com/linuxserver/reverse-proxy-confs.git
synced 2026-01-09 06:51:33 +08:00
restrict vaultwarden admin page to LAN
This commit is contained in:
parent
3f5dd87518
commit
9e4091a764
@ -62,6 +62,13 @@ server {
|
||||
# enable for Authentik (requires authentik-server.conf in the server block)
|
||||
#include /config/nginx/authentik-location.conf;
|
||||
|
||||
# if you enable admin page via ADMIN_TOKEN env variable
|
||||
# consider restricting access to LAN only via uncommenting the following lines
|
||||
#allow 10.0.0.0/8;
|
||||
#allow 172.16.0.0/12;
|
||||
#allow 192.168.0.0/16;
|
||||
#deny all;
|
||||
|
||||
include /config/nginx/proxy.conf;
|
||||
include /config/nginx/resolver.conf;
|
||||
set $upstream_app vaultwarden;
|
||||
|
||||
@ -49,6 +49,13 @@ location ~ ^(/vaultwarden)?/admin {
|
||||
# enable for Authentik (requires authentik-server.conf in the server block)
|
||||
#include /config/nginx/authentik-location.conf;
|
||||
|
||||
# if you enable admin page via ADMIN_TOKEN env variable
|
||||
# consider restricting access to LAN only via uncommenting the following lines
|
||||
#allow 10.0.0.0/8;
|
||||
#allow 172.16.0.0/12;
|
||||
#allow 192.168.0.0/16;
|
||||
#deny all;
|
||||
|
||||
include /config/nginx/proxy.conf;
|
||||
include /config/nginx/resolver.conf;
|
||||
set $upstream_app vaultwarden;
|
||||
|
||||
Loading…
x
Reference in New Issue
Block a user