#haproxy

2025-12-11

๐ŸŽ‰New HAProxy SPOA Remediation Component!

We recently released the cs-haproxy-spoa-bouncer, allowing CrowdSec decisions (block, CAPTCHA, allow) to be applied directly in @haproxy through a cleaner, more efficient SPOE integration.

In our latest Dev Diaries, @iiamloz shares how we replaced a clever-but-complex setup with a streamlined, single-listener design powered by goroutines, making CrowdSec faster, more reliable, and easier to operate.

Read more ๐Ÿ‘‰ crowdsec.net/blog/simplifying-

#HAProxy #cybersecurity #appsec #opensource

2025-12-09
I love that HAProxy is still active and the website looks as it does. You really don't need a fancy design for a website which it's primary goals are listing features, technically documentation, and download link.

https://www.haproxy.org/

#HAProxy
Stefano Marinellistefano@bsd.cafe
2025-12-09

Morning thought: HAProxyโ€™s caching may not be as advanced as other solutions (such as the excellent Varnish), but for some use cases it is fantastic.

#haproxy #Varnish #IT #SysAdmin #Caching

mastodon.raddemo.hostadmin@mastodon.raddemo.host
2025-12-08

How to Install and Configure #HAProxy on Oracle Linux #VPS Servers

This article provides a guide for how to install and configure HAProxy on Oracle Linux VPS servers.
What is HAProxy?
HAProxy (High Availability Proxy) is an open-source software widely used for load balancing, proxying, and high availability in modern IT infrastructure. It is especially popular in web hosting, cloud platforms, and ...
Continued ๐Ÿ‘‰ blog.radwebhosting.com/how-to- #oraclelinux #loadbalancer #reverseproxy #loadbalancing

Nils Goroll ๐Ÿ•Š๏ธ:varnishcache:slink@fosstodon.org
2025-12-06

@amapanda for backend tls, you can use the same haproxy as an onloader:

varnish-cache.org/docs/trunk/u

tls should be used when you have an untrusted network inbetween your cache and backends. otherwise http is more efficient

#vinylcache #haproxy

2025-12-04

Add /etc/haproxy/conf.d directory in the haproxy.service systemd unit file #systemd #haproxy

askubuntu.com/q/1560478/612

Updated #Orked, my collection of scripts to help set up a production-ready #RKE2 #Kubernetes cluster in your #homelab. This update brings general improvements to the scripts, improved documentation, #HAProxy load balancer support for load balancing multiple Master nodes, and upgraded all components including RKE2, #Longhorn, #Nginx Ingress, #Cert-manager, #MetalLB, #Rancher, etc. to their latest versions.

I still hope someday to support more Kubernetes
distributions like #k3s, but haven't gotten around to it. I've also been planning to support more #Linux distros as the base too, instead of only #RockyLinux/#RHEL, but that'll have to wait as well for now. Regardless, I am quite happy with how mature and stable these scripts have turned out to be. If you'd like to set up a cluster of your own, maybe check it out!

๐Ÿ”— https://github.com/irfanhakim-as/orked

๐Ÿ”— https://github.com/irfanhakim-as/orked/pull/41

Rad Web Hostingradwebhosting
2025-11-21

How to Install and Configure on Oracle Linux Servers

This article provides a guide for how to install and configure HAProxy on Oracle Linux VPS servers.
What is HAProxy?
HAProxy (High Availability Proxy) is an open-source software widely used for load balancing, proxying, and high availability in modern IT infrastructure. It is especially popular in web hosting, cloud platforms, and ...
Continued ๐Ÿ‘‰ blog.radwebhosting.com/how-to-

Rad Web Hostingradwebhosting
2025-11-21

How to Install and Configure on Oracle Linux Servers

This article provides a guide for how to install and configure HAProxy on Oracle Linux VPS servers.
What is HAProxy?
HAProxy (High Availability Proxy) is an open-source software widely used for load balancing, proxying, and high availability in modern IT infrastructure. It is especially popular in web hosting, cloud platforms, and ...
Continued ๐Ÿ‘‰ blog.radwebhosting.com/how-to-

Zach ๐Ÿ‡บ๐Ÿ‡ธ ๐Ÿ‡ฎ๐Ÿ‡ฑmrRobot@infosec.exchange
2025-11-20

Iโ€™m curious how many of you are actively evaluating an exit strategy from #F5 #BigIP, now that itโ€™s clear these appliances have been #compromised to a degree that makes long-term trust questionable. Are you already testing replacements, or at least mapping out contingency plans? And if so, which platforms are emerging as viable alternatives?

From what Iโ€™m seeing, teams are weighing several directions โ€” anything from #HAProxy, #NGINX/#OpenResty, or Envoy-based solutions, to #cloudnative forms and #opensource service meshes. None is a drop-in replacement, but each represents a different set of tradeoffs depending on how much control, transparency, and verifiability you want going forward.
#loadbalancer #security #cybersecurity

KMJ ๐Ÿ‡ฆ๐Ÿ‡นkmj@mastodon.ctseuro.com
2025-11-20

one of the main problem in transition to #IPv6 only is people running their #mailserver on #IPv4 .

could #NAT64 my own #mail servers pretty easy, but inbound #smtp is the only #protocol I found no way to run multiple servers behind e.g. #haproxy .

All the web stuff could be easy run behind 1 IPv4 and haproxy.

Looks like there is no working solution for multiple smtp port 25 behind a #reversed #proxy

Offensive Sequenceoffseq@infosec.exchange
2025-11-19

โš ๏ธ CVE-2025-11230: HIGH severity flaw in HAProxy Community Edition (2.4.0โ€“3.2.0) lets remote attackers cause DoS via crafted JSON. Monitor for patches, rate-limit, and filter JSON traffic. More: radar.offseq.com/threat/cve-20 #OffSeq #HAProxy #Vuln #DoS

High threat: CVE-2025-11230: CWE-407 Inefficient Algorithmic Complexity in HAProxy Technologies HAProxy Community
2025-11-18

Scaling AI Interactions: How to Load Balance Streamable MCP

The Model Context Protocol (MCP) is evolving. With the recent adoption of Streamable HTTP in early 2025, theโ€ฆ
#NewsBeep #News #Headlines #haproxy #Latvia #LV #post-contributed
newsbeep.com/256664/

2025-11-17

Just published a deep dive on hardening WordPress using a full defense-in-depth stack:

๐Ÿ” Wordfence + Really Simple Security
๐ŸŒฉ๏ธ Cloudflare WAF + Turnstile
๐Ÿ›ก๏ธ pfSense & HAProxy ACL enforcement
๐Ÿ“Œ Cloudflare CDN-CGI fixes
๐Ÿ“ Network-layer path blocking
โ€ฆall working together without breaking themes, plugins, or REST API.

If you run WordPress, this is how you keep it fast and locked down in 2025.

Read here:
jonahmay.net/defense-in-depth-

#WordPress #Security #Cloudflare #pfSense #HAProxy #WAF

KMJ ๐Ÿ‡ฆ๐Ÿ‡นkmj@mastodon.ctseuro.com
2025-11-16

Setting up #HAProxy on #pfSense . Unsure if it woks for #smtp #imap and other non http stuff too......

Mads B. Klinkby ๐ŸŒปklinkby@fosstodon.org
2025-11-15

Now that #dotnet10 is RTM, I just open sourced (AGPL3) a neat #booking management backend I enjoyed building with it in my spare time. The REST API is AOT-compiled to an Alpine image, with #Postgres in the back and #HAProxy/LetsEncrypt up front for hassle-free GDPR -friendly #selfhosting.
Source: github.com/klinkby/booqr
Demo: booqr.dk/

2025-11-12

Finally making progress on my #KeyHelp, #HAproxy, VPN, reverse proxy, #Anubis, #CrowdSec web host.

Until now I've only used CrowdSec, with rather aggressive User-Agent rules (blocking all the dark visitors).
Finally managed to get HAproxy to subrequest auth against Anubis working.
Last thing remaining: automated SSL certs.

Dantali0n :arch: :i3:dantalion@fosstodon.org
2025-11-10

I have decided to disallow all #LLM #AI crawlers on my sites using #haproxy and this list: robotstxt.com/ai

Below is how you configure this:

frontend www-https
bind :::80 v4v6
bind :::443 v4v6 ssl crt /etc/ssl/haproxy/

acl is_robots_txt path /robots.txt
use_backend robotstxt if is_robots_txt

backend robotstxt
mode http
http-request return status 200 content-type "text/plain" file "/etc/haproxy/robots.txt" hdr "cache-control" "no-cache"

Dantali0n :arch: :i3:dantalion@fosstodon.org
2025-11-10

@randahl @saarmuller For now, most of these LLM search engine / crawlers adhere to robots.txt

Meaning, blocking these activities of stealing traffic and content is largely solved by a well crafted robots.txt file:

robotstxt.com/ai

You can easily setup a proxy like #haproxy to always serve a particular static robots.txt for all your domains in one go.

Additionally, with or without enterprise features, you can block all LLM traffic entirely in haproxy.

haproxy.com/blog/how-to-reliab

#llm

Rad Web Hostingradwebhosting
2025-11-06

How to Install and Configure on Oracle Linux Servers

This article provides a guide for how to install and configure HAProxy on Oracle Linux VPS servers.
What is HAProxy?
HAProxy (High Availability Proxy) is an open-source software widely used for load balancing, proxying, and high availability in modern IT infrastructure. It is especially popular in web hosting, cloud platforms, and ...
Continued ๐Ÿ‘‰ blog.radwebhosting.com/how-to-

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst