Advertisement
imKobz

Untitled

Dec 19th, 2019
130
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.91 KB | None | 0 0
  1. global
  2. log /dev/log local0
  3. log /dev/log local1 notice
  4. chroot /var/lib/haproxy
  5. user haproxy
  6. group haproxy
  7. daemon
  8.  
  9. defaults
  10. log global
  11. mode tcp
  12. option tcplog
  13. option dontlognull
  14. maxconn 2000
  15. timeout connect 5000
  16. timeout client 500000
  17. timeout server 500000
  18.  
  19. frontend ssl
  20. mode tcp
  21. bind <host IP>:443
  22. tcp-request inspect-delay 3s
  23. tcp-request content accept if { req.ssl_hello_type 1 }
  24.  
  25. acl ssh_payload payload(0,7) -m bin 5353482d322e30
  26. use_backend ocserv if { req.ssl_hello_type 1 }
  27. use_backend openssh if ssh_payload
  28. use_backend openssh if !{ req.ssl_hello_type 1 } { req.len 0 }
  29.  
  30. backend openssh
  31. mode tcp
  32. timeout server 3h
  33. server openssh 127.0.0.1:22
  34.  
  35. backend ocserv
  36. mode tcp
  37. timeout server 24h
  38. server sslvpn 127.0.0.1:4433
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement