Skip to content

feat: Harden nginx config#40

Merged
tarekio merged 4 commits intosjacorg:mainfrom
zhabiba24:harden-nginx
Jan 14, 2025
Merged

feat: Harden nginx config#40
tarekio merged 4 commits intosjacorg:mainfrom
zhabiba24:harden-nginx

Conversation

@zhabiba24
Copy link
Contributor

Jira Issue

N/A

Description

Ran some checks on nginx config using gixy. Found some minor vulnerabilities.

https://github.com/yandex/gixy/blob/master/docs/en/plugins/aliastraversal.md
https://github.com/yandex/gixy/blob/master/docs/en/plugins/hostspoofing.md

Think it would be good to improve this in the information on docs.bayanat.org too but I can't see how to change that in this repo.

Checklist

  • Tests added/updated
  • Documentation updated (if needed)
  • New strings prepared for translations
  • Billing project label added

All N/A so haven't marked except for documentation but I'm not sure how to change that

API Changes (if applicable)

  • Permissions checked
  • Endpoint tests added

Additional Notes

[Any other relevant information]

@sjacgit
Copy link
Member

sjacgit commented Oct 11, 2024

Thanks for your contribution. We're reviewing this and will get back to you ASAP.

@tarekio tarekio requested review from level09 and tarekio January 2, 2025 15:02
@tarekio tarekio changed the title feat: harden nginx feat: Harden nginx config Jan 14, 2025
@tarekio tarekio merged commit 60fc2e0 into sjacorg:main Jan 14, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants