ansible/roles/haproxy/templates/sni.cfg.j2

12 lines
367 B
Plaintext
Raw Normal View History

2020-10-03 03:04:44 +02:00
frontend sni
log global
mode tcp
option tcplog
2020-10-03 03:04:44 +02:00
tcp-request inspect-delay 5s
tcp-request connection set-src src,ipmask(16,56)
2020-10-03 03:04:44 +02:00
tcp-request content accept if { req_ssl_hello_type 1 }
bind ${BIND_V4}:443
bind ${BIND_V6}:443
use_backend %[req_ssl_sni,lower,map(/usr/local/etc/haproxy/sni.map)]