fix(email): do not block ips for email

This commit is contained in:
Tine 2024-11-29 08:20:09 +01:00
parent 098ed56c10
commit f739cb30c5
Signed by: mentos1386
SSH key fingerprint: SHA256:MNtTsLbihYaWF8j1fkOHfkKNlnN1JQfxEU/rBU8nCGw
2 changed files with 38 additions and 37 deletions

View file

@ -98,47 +98,51 @@ stream {
# HTTPS # HTTPS
server { server {
access_log syslog:server=unix:/dev/log geoip_with_upstream; access_log syslog:server=unix:/dev/log geoip_with_upstream;
listen 0.0.0.0:443; listen 0.0.0.0:443;
listen [::]:443; listen [::]:443;
proxy_pass $selected_upstream; proxy_pass $selected_upstream;
proxy_protocol on; proxy_protocol on;
include /etc/nginx/partials/server.conf; resolver 9.9.9.9 1.1.1.1 8.8.8.8 8.8.4.4;
include /etc/nginx/partials/blocked.conf; set_real_ip_from 0.0.0.0/0;
include /etc/nginx/partials/manual-blocks.conf; ssl_preread on;
include /etc/nginx/partials/blocked.conf;
include /etc/nginx/partials/manual-blocks.conf;
} }
# GIT # GIT
server { server {
access_log syslog:server=unix:/dev/log geoip; access_log syslog:server=unix:/dev/log geoip;
listen 0.0.0.0:22; listen 0.0.0.0:22;
listen [::]:22; listen [::]:22;
proxy_pass batuu.system.tjo.space:2244; proxy_pass batuu.system.tjo.space:2244;
proxy_protocol on; proxy_protocol on;
include /etc/nginx/partials/server.conf; resolver 9.9.9.9 1.1.1.1 8.8.8.8 8.8.4.4;
include /etc/nginx/partials/blocked.conf; set_real_ip_from 0.0.0.0/0;
include /etc/nginx/partials/manual-blocks.conf; include /etc/nginx/partials/blocked.conf;
include /etc/nginx/partials/manual-blocks.conf;
} }
# EMAIL # EMAIL
server { server {
access_log syslog:server=unix:/dev/log geoip; access_log syslog:server=unix:/dev/log geoip;
listen 0.0.0.0:25; listen 0.0.0.0:25;
listen [::]:25; listen [::]:25;
listen 0.0.0.0:143; listen 0.0.0.0:143;
listen [::]:143; listen [::]:143;
listen 0.0.0.0:465; listen 0.0.0.0:465;
listen [::]:465; listen [::]:465;
listen 0.0.0.0:587; listen 0.0.0.0:587;
listen [::]:587; listen [::]:587;
listen 0.0.0.0:993; listen 0.0.0.0:993;
listen [::]:993; listen [::]:993;
listen 0.0.0.0:4190; listen 0.0.0.0:4190;
listen [::]:4190; listen [::]:4190;
proxy_pass nevaroo.system.tjo.space:$server_port; proxy_pass nevaroo.system.tjo.space:$server_port;
proxy_protocol on; proxy_protocol on;
include /etc/nginx/partials/server.conf; resolver 9.9.9.9 1.1.1.1 8.8.8.8 8.8.4.4;
include /etc/nginx/partials/blocked.conf; set_real_ip_from 0.0.0.0/0;
include /etc/nginx/partials/manual-blocks.conf; #include /etc/nginx/partials/blocked.conf;
#include /etc/nginx/partials/manual-blocks.conf;
} }
} }

View file

@ -1,4 +1 @@
# Default server configuration # Default server configuration
resolver 9.9.9.9 1.1.1.1 8.8.8.8 8.8.4.4;
set_real_ip_from 0.0.0.0/0;
ssl_preread on;