mirror of
				https://github.com/thib8956/nginx-proxy
				synced 2025-10-24 21:59:21 +00:00 
			
		
		
		
	If header values from a malicious client are passed to the backend server unchecked and unchanged, the client may be able to subvert security checks done by the backend server.
		
			
				
	
	
		
			19 lines
		
	
	
		
			455 B
		
	
	
	
		
			YAML
		
	
	
	
	
	
			
		
		
	
	
			19 lines
		
	
	
		
			455 B
		
	
	
	
		
			YAML
		
	
	
	
	
	
| web:
 | |
|   image: web
 | |
|   expose:
 | |
|     - "80"
 | |
|   environment:
 | |
|     WEB_PORTS: 80
 | |
|     VIRTUAL_HOST: web.nginx-proxy.tld
 | |
|     HTTPS_METHOD: noredirect
 | |
| 
 | |
| 
 | |
| sut:
 | |
|   image: nginxproxy/nginx-proxy:test
 | |
|   environment:
 | |
|     TRUST_DOWNSTREAM_PROXY: "true"
 | |
|   volumes:
 | |
|     - /var/run/docker.sock:/tmp/docker.sock:ro
 | |
|     - ./certs/web.nginx-proxy.tld.crt:/etc/nginx/certs/web.nginx-proxy.tld.crt:ro
 | |
|     - ./certs/web.nginx-proxy.tld.key:/etc/nginx/certs/web.nginx-proxy.tld.key:ro
 |