feat(nginx): add local authorisation rules

This prevents devices with a source IP address outside of the allowed IP
addresses from connecting to the target location. This is useful for
internal-only locations, in case people make an attempt to directly
connect by modifying their `/etc/hosts` file or custom DNS to bypass the
lack of internal domains on public DNS.
This commit is contained in:
inference 2025-07-02 22:28:14 +00:00
parent 021658d9e9
commit 478561a448
Signed by: inference
SSH Key Fingerprint: SHA256:/O3c09/4f1lh4zrhFs2qvQEDda6dZbTwG9xEcj8OfWo

View File

@ -1,6 +1,6 @@
# Inferencium - xb-00-01
# Nginx - Configuration - youtube-local
# Version: 1.0.0
# Version: 1.1.0-alpha.1
# Copyright 2025 Jake Winters
# SPDX-License-Identifier: BSD-3-Clause
@ -36,6 +36,9 @@ server {
# Location
location / {
proxy_pass http://localhost:8080;
allow 10.0.0.30;
allow 10.0.0.40;
deny all;
}
# Security