Marcus Rueckert
35ad665cc8
https://www.mail-archive.com/haproxy@formilux.org/msg41508.html - refreshed patches to apply cleanly again haproxy-1.6.0-sec-options.patch haproxy-1.6.0_config_haproxy_user.patch lua54.patch OBS-URL: https://build.opensuse.org/package/show/server:http/haproxy?expand=0&rev=254
64 lines
1.8 KiB
Diff
64 lines
1.8 KiB
Diff
Index: haproxy-2.5/examples/acl-content-sw.cfg
|
|
===================================================================
|
|
--- haproxy-2.5.orig/examples/acl-content-sw.cfg
|
|
+++ haproxy-2.5/examples/acl-content-sw.cfg
|
|
@@ -5,9 +5,9 @@ global
|
|
log loghost local0
|
|
log localhost local0 err
|
|
maxconn 250
|
|
- uid 71
|
|
- gid 71
|
|
- chroot /var/empty
|
|
+ user haproxy
|
|
+ group haproxy
|
|
+ chroot /var/lib/haproxy
|
|
pidfile /var/run/haproxy.pid
|
|
daemon
|
|
quiet
|
|
Index: haproxy-2.5/examples/content-sw-sample.cfg
|
|
===================================================================
|
|
--- haproxy-2.5.orig/examples/content-sw-sample.cfg
|
|
+++ haproxy-2.5/examples/content-sw-sample.cfg
|
|
@@ -11,9 +11,9 @@ global
|
|
maxconn 10000
|
|
stats socket /var/run/haproxy.stat mode 600 level admin
|
|
log 127.0.0.1 local0
|
|
- uid 200
|
|
- gid 200
|
|
- chroot /var/empty
|
|
+ user haproxy
|
|
+ group haproxy
|
|
+ chroot /var/lib/haproxy
|
|
daemon
|
|
|
|
# The public 'www' address in the DMZ
|
|
Index: haproxy-2.5/examples/option-http_proxy.cfg
|
|
===================================================================
|
|
--- haproxy-2.5.orig/examples/option-http_proxy.cfg
|
|
+++ haproxy-2.5/examples/option-http_proxy.cfg
|
|
@@ -9,6 +9,9 @@ global
|
|
uid 200
|
|
gid 200
|
|
chroot /var/empty
|
|
+ chroot /var/lib/haproxy
|
|
+ user haproxy
|
|
+ group haproxy
|
|
daemon
|
|
|
|
frontend test-proxy
|
|
Index: haproxy-2.5/examples/transparent_proxy.cfg
|
|
===================================================================
|
|
--- haproxy-2.5.orig/examples/transparent_proxy.cfg
|
|
+++ haproxy-2.5/examples/transparent_proxy.cfg
|
|
@@ -6,6 +6,10 @@
|
|
#
|
|
|
|
global
|
|
+ chroot /var/lib/haproxy
|
|
+ user haproxy
|
|
+ group haproxy
|
|
+
|
|
defaults
|
|
timeout client 30s
|
|
timeout server 30s
|