and this is actually sucks, that it blocks on nginx by incorrect user agent.
because this is first what spammers change.... but it blocks relevant traffic from scripts and other dev stuff.
Python-urllib|Nmap|python-requests|libwww-perl|MJ12bot|Jorgee|fasthttp|libwww|Telesphoreo|A6-Indexer|ltx71|okhttp|ZmEu|sqlmap|LMAO/2.0|ltx71|zgrab|Ronin/2.0|Hakai/2.0
no, it is hardcoded in the config. You can use the plugin interface to create a similar config and disable the internal check. https://github.com/opnsense/plugins/blob/master/www/nginx/src/opnsense/service/templates/OPNsense/Nginx/http.conf#L241The UUID is the id you get in the config.xml and in the api for the HTTP server.