summaryrefslogtreecommitdiff
path: root/docs
diff options
context:
space:
mode:
authorAlexandre Flament <alex@al-f.net>2021-03-04 11:27:03 +0100
committerGitHub <noreply@github.com>2021-03-04 11:27:03 +0100
commit1d10ae175c0929d383d268f56bfadb304365ccf2 (patch)
tree7cee11f8cae196a2764d319f0736cba1877abb4e /docs
parent6ba37777f732d0538be342511e68494d75e3627b (diff)
parent8736f5bd70dea715717c641df25870c40d4a42b9 (diff)
Merge pull request #2618 from thezeroalpha/master
Fix security vulnerabilities in provided nginx configuration
Diffstat (limited to 'docs')
-rw-r--r--docs/admin/filtron.rst2
-rw-r--r--docs/admin/installation-nginx.rst16
2 files changed, 9 insertions, 9 deletions
diff --git a/docs/admin/filtron.rst b/docs/admin/filtron.rst
index 503a4d51d..41c4a31d6 100644
--- a/docs/admin/filtron.rst
+++ b/docs/admin/filtron.rst
@@ -173,7 +173,7 @@ Use it along with ``nginx`` with the following example configuration.
location /searx {
proxy_pass http://127.0.0.1:4004/;
- proxy_set_header Host $http_host;
+ proxy_set_header Host $host;
proxy_set_header Connection $http_connection;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
diff --git a/docs/admin/installation-nginx.rst b/docs/admin/installation-nginx.rst
index 430ebbcce..97966c8c4 100644
--- a/docs/admin/installation-nginx.rst
+++ b/docs/admin/installation-nginx.rst
@@ -182,7 +182,7 @@ Started wiki`_ is always a good resource *to keep in the pocket*.
location /searx {
proxy_pass http://127.0.0.1:4004/;
- proxy_set_header Host $http_host;
+ proxy_set_header Host $host;
proxy_set_header Connection $http_connection;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
@@ -190,8 +190,8 @@ Started wiki`_ is always a good resource *to keep in the pocket*.
proxy_set_header X-Script-Name /searx;
}
- location /searx/static {
- alias /usr/local/searx/searx-src/searx/static;
+ location /searx/static/ {
+ alias /usr/local/searx/searx-src/searx/static/;
}
@@ -205,7 +205,7 @@ Started wiki`_ is always a good resource *to keep in the pocket*.
location /morty {
proxy_pass http://127.0.0.1:3000/;
- proxy_set_header Host $http_host;
+ proxy_set_header Host $host;
proxy_set_header Connection $http_connection;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
@@ -309,8 +309,8 @@ Started wiki`_ is always a good resource *to keep in the pocket*.
proxy_buffering off;
}
- location /searx/static {
- alias /usr/local/searx/searx-src/searx/static;
+ location /searx/static/ {
+ alias /usr/local/searx/searx-src/searx/static/;
}
The ``X-Script-Name /searx`` is needed by the searx implementation to
@@ -328,8 +328,8 @@ Started wiki`_ is always a good resource *to keep in the pocket*.
uwsgi_pass unix:/run/uwsgi/app/searx/socket;
}
- location /searx/static {
- alias /usr/local/searx/searx-src/searx;
+ location /searx/static/ {
+ alias /usr/local/searx/searx-src/searx/;
}
For searx to work correctly the ``base_url`` must be set in the