Browse Source

update 优化 nginx 限制外网访问内网 actuator 相关路径

疯狂的狮子Li 2 years ago
parent
commit
5eff9a50b6
1 changed files with 9 additions and 4 deletions
  1. 9 4
      script/docker/nginx/nginx.conf

+ 9 - 4
script/docker/nginx/nginx.conf

@@ -23,16 +23,16 @@ http {
 
     upstream server {
         ip_hash;
-        server 172.30.0.60:8080;
-        server 172.30.0.61:8080;
+        server 127.0.0.1:8080;
+        server 127.0.0.1:8080;
     }
 
     upstream monitor-admin {
-        server 172.30.0.90:9090;
+        server 127.0.0.1:9090;
     }
 
     upstream xxljob-admin {
-        server 172.30.0.92:9100;
+        server 127.0.0.1:9100;
     }
 
     server {
@@ -62,6 +62,11 @@ http {
         #     return 200 '{"msg":"演示模式,不允许操作","code":500}';
         # }
 
+        # 限制外网访问内网 actuator 相关路径
+        location ~ ^(/[^/]*)?/actuator(/.*)?$ {
+            return 403;
+        }
+
         location / {
             root   /usr/share/nginx/html;
             try_files $uri $uri/ /index.html;