No description
- JavaScript 69.8%
- Python 27.7%
- Shell 1.3%
- CSS 1%
- HTML 0.2%
| Filename | Latest commit message | Latest commit date |
|---|---|---|
| deploy | ||
| ham | ||
| static | ||
| .gitignore | ||
| app.py | ||
| install.sh | ||
| LICENSE | ||
| README.md | ||
| test_auditlog.py | ||
| VERSION | ||
HAProxy Manager
This repository is a downstream fork of HAProxy Manager, the original product.
The upstream GNU General Public License, version 3 or later, is retained for this fork.
Differences from upstream
ham/probe.pychanges published-URL watchdog probes: when HTTPS is served by a loopback frontend behind a public TCP/SNI listener on port 443, probes use the public port 443 with the service hostname instead of probing the internal PROXY-protocol port. This prevents healthy services from being reported as not answering.ham/auditlog.pyadds a read-only Traffic Audit page. It parses HAProxy L4/L7 access-log and event records into a node-local SQLite database with 30-day retention, pagination and filters for log kind, client IP and time range.ham/adminaudit.pyadds a structured Admin Audit page. Mutating UI/API requests are recorded with actor, source IP, method, path, resource and result in a separate node-local 30-day SQLite database.ham/crowdsec.pyadds CrowdSec Decisions, Whitelist/Blacklist and read-only AppSec pages. Decisions can be listed, added and removed throughcscli; the whitelist editor updates the local CrowdSec parser whitelist and reloads CrowdSec. These operations do not modifyhaproxy.cfgor reload HAProxy.- The navigation adds a Security section for Traffic Audit, Admin Audit, CrowdSec Decisions, CrowdSec Whitelist/Blacklist and CrowdSec AppSec. The AppSec view reports configured CRS/AppSec state, metrics availability and recent alerts without changing CrowdSec state.