Openappsec WAF setup with Nginx Proxy Manager(SaaS Option)

  Рет қаралды 1,357

#geek2gether

#geek2gether

Күн бұрын

The video introduces openappsec WAF and goes over installation and setup with Nginx Proxy Manager
#openappsec #checkpoint
Documentation:
About openappsec:
www.openappsec...
NPM and openappsec Setup (saas option)
docs.openappse...
hub.geek2gethe...
Learn more about openappsec by watching their video here:
• Introduction to open-a...

Пікірлер: 12
@PowerUsr1
@PowerUsr1 3 ай бұрын
excellent work !!!
@geek2gether469
@geek2gether469 3 ай бұрын
Thank you for watching
@verticalfrog1330
@verticalfrog1330 4 ай бұрын
Hello, can you also make a video with X-Forwarded-For Header in HTTP Requests as the Source Identity? I am using Nginx Web Proxy Manager with Cloudflare. TIA!
@geek2gether469
@geek2gether469 4 ай бұрын
If you are looking to get the real ip of the client it is a pretty simple change, however the change needs to be made in Nginx proxy manager. In the Nginx proxy manager , open a proxy host and go to advance configuration then paste the following: set_real_ip_from 103.21.244.0/22; set_real_ip_from 103.22.200.0/22; set_real_ip_from 103.31.4.0/22; set_real_ip_from 104.16.0.0/13; set_real_ip_from 104.24.0.0/14; set_real_ip_from 108.162.192.0/18; set_real_ip_from 141.101.64.0/18; set_real_ip_from 162.158.0.0/15; set_real_ip_from 172.64.0.0/13; set_real_ip_from 173.245.48.0/20; set_real_ip_from 188.114.96.0/20; set_real_ip_from 190.93.240.0/20; set_real_ip_from 197.234.240.0/22; set_real_ip_from 198.41.128.0/17; set_real_ip_from 2400:cb00::/32; set_real_ip_from 2606:4700::/32; set_real_ip_from 2803:f800::/32; set_real_ip_from 2405:b500::/32; set_real_ip_from 2405:8100::/32; set_real_ip_from 2a06:98c0::/29; set_real_ip_from 2c0f:f248::/32; real_ip_header CF-Connecting-IP; real_ip_recursive on; Once pasted, save and repeat for all your other proxy hosts if needed. The above config is a list of cloudflare IP's and will replace the source ip header with the clients ip actual ip. Now you can go back to openappsec and set source identity to "source IP" and enforce the policy. Thats it, you should be able to now get the clients IP instead of cloudflares. Note: The X-Forwarded-For Header only will accept single IPs and not subnets such as 10.0.0.1/24. So this will work if you have an internal proxy and not cloudflare. Please like and share!
@Neo198431
@Neo198431 4 күн бұрын
Which should I use for npm crowdsec or open appsec?
@allxtechnologies
@allxtechnologies 3 ай бұрын
Love your videos! I've been looking into this for a while now. There is any way to selfhost the dashboard instead of connecting it to saas?
@geek2gether469
@geek2gether469 3 ай бұрын
Yes there is a self hosted option. I’m actually working on a video for that!
@arjuna5051
@arjuna5051 14 күн бұрын
Can I install this in the web server itself? Using nginx and hosting multiple websites. Can't afford another server.
@geek2gether469
@geek2gether469 13 күн бұрын
Yes you can install it on Nginx without NPM. I am working on a Nginx video
@nightbot4773
@nightbot4773 3 ай бұрын
Hello, I want to ask, how about doing it to protect the http in localhost, can you help me to do an experiment 🙏
@geek2gether469
@geek2gether469 3 ай бұрын
Head over to hub.geek2gether.com/c/openappsec/17 and post a question about what you need help with.
@nightbot4773
@nightbot4773 3 ай бұрын
OK, thank you, I'll wait for your answer there​@@geek2gether469
open-appsec WAF machine learning deep dive
1:13:10
open-appsec
Рет қаралды 1,5 М.
My Daughter's Dumplings Are Filled With Coins #funny #cute #comedy
00:18
Funny daughter's daily life
Рет қаралды 23 МЛН
Когда отец одевает ребёнка @JaySharon
00:16
История одного вокалиста
Рет қаралды 11 МЛН
Ozoda - Lada ( Official Music Video 2024 )
06:07
Ozoda
Рет қаралды 25 МЛН
Run ALL Your AI Locally in Minutes (LLMs, RAG, and more)
20:19
Cole Medin
Рет қаралды 139 М.
Setup Crowdsec with Nginx Proxy Manager - Part 2 (Multi-server setup)
23:26
I built an app using a single index.php file, here's how it went
32:42
Andrew Schmelyun
Рет қаралды 70 М.
OPNSense - Web Application Firewall (WAF) configuration using NAXSI
19:21
LS111 Cyber Security Education
Рет қаралды 26 М.
Is this the BEST Reverse Proxy for Docker? // Traefik Tutorial
21:57
Christian Lempa
Рет қаралды 522 М.
My Daughter's Dumplings Are Filled With Coins #funny #cute #comedy
00:18
Funny daughter's daily life
Рет қаралды 23 МЛН