mirror of
https://github.com/linuxserver/reverse-proxy-confs.git
synced 2025-07-05 04:26:02 -07:00
restrict vaultwarden admin page to LAN
This commit is contained in:
parent
3f5dd87518
commit
9e4091a764
2 changed files with 14 additions and 0 deletions
|
@ -62,6 +62,13 @@ server {
|
|||
# enable for Authentik (requires authentik-server.conf in the server block)
|
||||
#include /config/nginx/authentik-location.conf;
|
||||
|
||||
# if you enable admin page via ADMIN_TOKEN env variable
|
||||
# consider restricting access to LAN only via uncommenting the following lines
|
||||
#allow 10.0.0.0/8;
|
||||
#allow 172.16.0.0/12;
|
||||
#allow 192.168.0.0/16;
|
||||
#deny all;
|
||||
|
||||
include /config/nginx/proxy.conf;
|
||||
include /config/nginx/resolver.conf;
|
||||
set $upstream_app vaultwarden;
|
||||
|
|
|
@ -49,6 +49,13 @@ location ~ ^(/vaultwarden)?/admin {
|
|||
# enable for Authentik (requires authentik-server.conf in the server block)
|
||||
#include /config/nginx/authentik-location.conf;
|
||||
|
||||
# if you enable admin page via ADMIN_TOKEN env variable
|
||||
# consider restricting access to LAN only via uncommenting the following lines
|
||||
#allow 10.0.0.0/8;
|
||||
#allow 172.16.0.0/12;
|
||||
#allow 192.168.0.0/16;
|
||||
#deny all;
|
||||
|
||||
include /config/nginx/proxy.conf;
|
||||
include /config/nginx/resolver.conf;
|
||||
set $upstream_app vaultwarden;
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue