Update traefik deployment + add crowdsec bouncer
All checks were successful
continuous-integration/drone/push Build is passing

This commit is contained in:
Adrien Reslinger 2022-06-05 11:27:24 +02:00
parent 736ac64ff0
commit 6def4562ad
Signed by: adrien
GPG key ID: DA7B27055C66D6DE
4 changed files with 46 additions and 10 deletions

View file

@ -7,14 +7,14 @@ data:
traefik-middlewares.yaml: |
http:
middlewares:
test_chain:
min_security:
chain:
middlewares:
- rate-limit
- security_headers
{% if ingress_whitelist is defined %}
- traefik-ipwhitelist
{% endif %}
- rate-limit
- compress
{% if basic_auth|bool %}
- basic-auth
@ -41,9 +41,8 @@ data:
stsPreload: true
customFrameOptionsValue: "SAMEORIGIN"
referrerPolicy: "same-origin"
featurePolicy: "vibrate 'self'"
permissionsPolicy: "vibrate 'self'"
stsSeconds: 315360000
sslRedirect: true
contentSecurityPolicy: "default-src 'self' 'unsafe-inline'"
# customResponseHeaders:
# X-Robots-Tag: "none,noarchive,nosnippet,notranslate,noimageindex,"
@ -84,7 +83,7 @@ data:
- "Remote-Email"
crowdsec-bouncer:
forwardAuth:
address: "http://crowdsec-traefik-bouncer:8080/api/v1/forwardAuth
address: "http://crowdsec-traefik-bouncer-service/api/v1/forwardAuth"
trustForwardHeader: true
traefik-tls-defaults-options.yaml: |