proxy_cache_path /var/cache/lighttpd levels=1:2 keys_zone=209ab9ff8560484caaf081f8bcac9c2d:10m max_size=1g inactive=10m use_temp_path=off;
location / { SecRulesEnabled; LearningMode; BasicRule wl:19; CheckRule "$policy4434ab68a29c40a2ba8165bb0152726b >= 8" BLOCK; CheckRule "$policye1e33beefff64c3aac540aa206da52c4 >= 8" BLOCK; CheckRule "$policy005d90775be94cdfb326ff4249e5c949 >= 8" BLOCK; CheckRule "$policy6dbf193648204b3f9da750d19b0dfd14 >= 8" BLOCK; CheckRule "$policy30b8fbbed9854f1eb42a19353326f25e >= 8" BLOCK; CheckRule "$policy9c0c9f9ad1b44a52b52ca20418d980dc >= 8" BLOCK; DeniedUrl "/waf_denied.html"; autoindex off; http2_push_preload on; proxy_set_header Host $host; proxy_cache 209ab9ff8560484caaf081f8bcac9c2d; proxy_cache_use_stale error timeout invalid_header updating http_429 http_500 http_502 http_503 http_504; proxy_cache_min_uses 10; proxy_cache_background_update on; proxy_cache_lock on; proxy_cache_revalidate on; proxy_cache_methods GET HEAD; proxy_set_header X-TLS-Cipher $ssl_cipher; proxy_set_header X-TLS-Protocol $ssl_protocol; proxy_set_header X-TLS-SNI-Host $ssl_server_name; # proxy headers for backend server proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto $scheme; proxy_set_header X-TLS-Client-Intercepted $tls_intercepted; proxy_ignore_client_abort off; proxy_request_buffering on; proxy_max_temp_file_size 1024m; proxy_buffering on; proxy_pass http://upstreambcd9e05221ad4fb3852fb408c4fe5030; proxy_hide_header X-Powered-By; proxy_hide_header Referrer-Policy; proxy_hide_header X-XSS-Protection; proxy_hide_header X-Content-Type-Options; proxy_hide_header Strict-Transport-Security; proxy_hide_header Content-Security-Policy; proxy_hide_header Content-Security-Policy-Report-Only;}