## Automatically generated configuration.# Do not edit this file manually.#global uid 80 gid 80 chroot /var/haproxy daemon stats socket /var/run/haproxy.socket group proxy mode 775 level admin nbthread 4 hard-stop-after 60s no strict-limits tune.ssl.ocsp-update.mindelay 300 tune.ssl.ocsp-update.maxdelay 3600 httpclient.resolvers.prefer ipv4 tune.ssl.default-dh-param 2048 spread-checks 2 tune.bufsize 16384 tune.lua.maxmem 0 log /var/run/log local0 info lua-prepend-path /tmp/haproxy/lua/?.luadefaults log global option redispatch -1 maxconn 5000 timeout client 30s timeout connect 30s timeout server 30s retries 3 default-server init-addr last,libc default-server maxconn 5000# autogenerated entries for ACLs# autogenerated entries for config in backends/frontends# autogenerated entries for stats# Frontend: HA (Home Assistant)frontend HA bind ha.example.org:8123 name ha.example.org:8123 mode tcp default_backend homeassistant-pool # logging options option tcplog # WARNING: pass through options below this line tcp-request inspect-delay 5s tcp-request content accept if { req_ssl_hello_type 1 }# Frontend: Nextcloud (Nextcloud)frontend Nextcloud bind nxt.example.org:443 name nxt.example.org:443 bind nxt.example.org:80 name nxt.example.org:80 mode tcp default_backend nextcloudpool # logging options option tcplog # WARNING: pass through options below this line tcp-request inspect-delay 5s tcp-request content accept if { req_ssl_hello_type 1 }# Backend: homeassistant-pool ()backend homeassistant-pool # health check: HA-Healthcheck mode tcp balance source # stickiness stick-table type ip size 50k expire 30m stick on src server homeassistant 192.168.1.88:8123 check inter 2s port 8123 # Backend: nextcloudpool ()backend nextcloudpool # health check: Nextcloud-Healthcheck mode tcp balance source # stickiness stick-table type ip size 50k expire 30m stick on src server qfeeds-office 192.168.1.35:443 check inter 5s port 443 listen local_statistics bind 127.0.0.1:8822 mode http stats uri /haproxy?stats stats realm HAProxy\ statistics stats admin if TRUElisten remote_statistics bind 192.168.1.1:8999 mode http stats uri /haproxy?stats stats hide-version
error","ts":"2024-06-22T12:25:59Z","logger":"tls.obtain","msg":"could not get certificate from issuer","identifier":"blabla.example.org","issuer":"acme-v02.api.letsencrypt.org-directory","error":"HTTP 429 urn:ietf:params:acme:error:rateLimited - Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/"}
## Automatically generated configuration.# Do not edit this file manually.#global uid 80 gid 80 chroot /var/haproxy daemon stats socket /var/run/haproxy.socket group proxy mode 775 level admin nbthread 4 hard-stop-after 60s no strict-limits tune.ssl.ocsp-update.mindelay 300 tune.ssl.ocsp-update.maxdelay 3600 httpclient.resolvers.prefer ipv4 tune.ssl.default-dh-param 2048 spread-checks 2 tune.bufsize 16384 tune.lua.maxmem 0 log /var/run/log local0 info lua-prepend-path /tmp/haproxy/lua/?.luadefaults log global option redispatch -1 maxconn 5000 timeout client 30s timeout connect 30s timeout server 30s retries 3 default-server init-addr last,libc default-server maxconn 5000# autogenerated entries for ACLs# autogenerated entries for config in backends/frontends# autogenerated entries for stats# Frontend: HA-listener (Public service)frontend HA-listener bind ha.example.org:8123 name ha.example.org:8123 bind nextcloud.example.com:443 name nextcloud.example.com:443 mode tcp # logging options option tcplog # WARNING: pass through options below this line tcp-request inspect-delay 5s tcp-request content accept if { req_ssl_hello_type 1 }# Frontend (DISABLED): Nextcloud (Nextcloud)# Backend: homeassistant-pool ()backend homeassistant-pool # health check: HA-Healthcheck mode tcp balance source # stickiness stick-table type ip size 50k expire 30m stick on src server homeassistant 192.168.1.88:8123 check inter 2s port 8123 # Backend: nextcloudpool ()backend nextcloudpool # health check: Nextcloud-Healthcheck mode tcp balance source # stickiness stick-table type ip size 50k expire 30m stick on src server nextcloud 192.168.1.35:443 check inter 5s port 443 listen local_statistics bind 127.0.0.1:8822 mode http stats uri /haproxy?stats stats realm HAProxy\ statistics stats admin if TRUElisten remote_statistics bind 192.168.1.1:8999 mode http stats uri /haproxy?stats stats hide-version
## Automatically generated configuration.# Do not edit this file manually.#global uid 80 gid 80 chroot /var/haproxy daemon stats socket /var/run/haproxy.socket group proxy mode 775 level admin nbthread 4 hard-stop-after 60s no strict-limits maxconn 10000 tune.ssl.ocsp-update.mindelay 300 tune.ssl.ocsp-update.maxdelay 3600 httpclient.resolvers.prefer ipv4 tune.ssl.default-dh-param 4096 spread-checks 2 tune.bufsize 16384 tune.lua.maxmem 0 log /var/run/log local0 info lua-prepend-path /tmp/haproxy/lua/?.luadefaults log global option redispatch -1 maxconn 5000 timeout client 30s timeout connect 30s timeout server 30s retries 3 default-server init-addr last,libc default-server maxconn 5000# autogenerated entries for ACLs# autogenerated entries for config in backends/frontends# autogenerated entries for stats# Frontend (DISABLED): SNI-listener (Public service)# Frontend (DISABLED): HA-Listener (public)# Frontend: Public-service-sni-listener ()frontend Public-service-sni-listener bind [::]:443 name [::]:443 bind [::]:80 name [::]:80 bind 0.0.0.0:443 name 0.0.0.0:443 bind 0.0.0.0:80 name 0.0.0.0:80 bind 0.0.0.0:8123 name 0.0.0.0:8123 bind [::]:8123 name [::]:8123 mode tcp default_backend pool-all # logging options # WARNING: pass through options below this line tcp-request inspect-delay 5s tcp-request content accept if { req_ssl_hello_type 1 }# Backend (DISABLED): homeassistant-pool ()# Backend (DISABLED): nextcloudpool ()# Backend (DISABLED): directadminpool ()# Backend: pool-all ()backend pool-all # health checking is DISABLED mode tcp balance source # stickiness stick-table type ip size 50k expire 30m stick on src # ACL: homeassistant_sni acl acl_668517d7e34a26.66992240 req.ssl_sni -i app1.example1.org # ACL: nextcloud_sni acl acl_668517cca10095.43472848 req.ssl_sni -i app2.example2.org # ACTION: ha_sni_rule use-server homeassistant if acl_668517d7e34a26.66992240 # ACTION: nextcloud_sni_rule use-server office if acl_668517cca10095.43472848 # ACTION: other_sni_rule use-server directadmin unless acl_668517d7e34a26.66992240 acl_668517cca10095.43472848 server directadmin 192.168.10.102:443 server homeassistant 192.168.1.88:8123 server office 192.168.1.35:443 # statistics are DISABLED
Domains: *.example.com *.opnsense.comMatchers: not tls sniUpstream Domain: Your hosting panel IP Address(es)Upstream Port: 443