Add loki ip whitelist
This commit is contained in:
parent
63e99af32c
commit
dc7f03c990
2 changed files with 3 additions and 1 deletions
|
@ -5,6 +5,7 @@ server:
|
||||||
ssh_port: 22
|
ssh_port: 22
|
||||||
work_dir: /mnt/test
|
work_dir: /mnt/test
|
||||||
backup_dir: /mnt/btest
|
backup_dir: /mnt/btest
|
||||||
|
ip: 127.0.0.1
|
||||||
vpn:
|
vpn:
|
||||||
subnet: 192.168.1.0/24
|
subnet: 192.168.1.0/24
|
||||||
ip: 192.168.1.254
|
ip: 192.168.1.254
|
||||||
|
|
|
@ -43,8 +43,9 @@ services:
|
||||||
- traefik.enable=true
|
- traefik.enable=true
|
||||||
- traefik.http.routers.loki-secure.entrypoints=https
|
- traefik.http.routers.loki-secure.entrypoints=https
|
||||||
- traefik.http.routers.loki-secure.rule=Host(`loki.{{ server.domain }}`)
|
- traefik.http.routers.loki-secure.rule=Host(`loki.{{ server.domain }}`)
|
||||||
|
- traefik.http.middlewares.loki-whitelist.ipWhiteList.sourceRange={{ server.ip }},192.168.1.0/24
|
||||||
- traefik.http.middlewares.loki-auth.basicauth.users=lokidoki:$$2y$$05$$HHJS7jsXv9g.1AsZX6f0jeFP.CrfGuvm1qoj/V8d/iXrX9oTKbDH2
|
- traefik.http.middlewares.loki-auth.basicauth.users=lokidoki:$$2y$$05$$HHJS7jsXv9g.1AsZX6f0jeFP.CrfGuvm1qoj/V8d/iXrX9oTKbDH2
|
||||||
- traefik.http.routers.loki-secure.middlewares=loki-auth
|
- traefik.http.routers.loki-secure.middlewares=loki-whitelist,loki-auth
|
||||||
- traefik.http.routers.loki-secure.tls=true
|
- traefik.http.routers.loki-secure.tls=true
|
||||||
- traefik.http.routers.loki-secure.tls.certresolver=sslResolver
|
- traefik.http.routers.loki-secure.tls.certresolver=sslResolver
|
||||||
- traefik.http.routers.loki-secure.service=loki
|
- traefik.http.routers.loki-secure.service=loki
|
||||||
|
|
Loading…
Reference in a new issue