Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enforce basic authentication for haproxy stat page #329

Open
marde16 opened this issue Feb 5, 2024 · 1 comment
Open

Enforce basic authentication for haproxy stat page #329

marde16 opened this issue Feb 5, 2024 · 1 comment

Comments

@marde16
Copy link
Contributor

marde16 commented Feb 5, 2024

Please add stats auth {{__haproxy_username}}:{{__haproxy_password}} in the section "frontend http_stats" (and the necessary vars in the var file), because everyone who know and has access to the HAProxy stat page can put servers into maintenance mode or drain traffic from them wihtout authentication.

frontend http_stats
bind *:8080
mode http
stats uri /haproxy?stats

more information Exploring the HAProxy Stats Page (What You Should Know)

@pln-git4011
Copy link
Collaborator

Hi Martin, thank you for the feedback. An internal ticket has been created and will be review by the squad

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants