diff --git a/init.lua b/init.lua index a837aa2..dbff0f7 100644 --- a/init.lua +++ b/init.lua @@ -250,7 +250,7 @@ end function blockip() if next(ipBlocklist) ~= nil then for _,ip in pairs(ipBlocklist) do - if getClientIp()==ip then + if getClientIp()==ip or ip=="0.0.0.0" then ngx.exit(403) return true end diff --git a/wafconf/url b/wafconf/url index 31130d3..67e621f 100644 --- a/wafconf/url +++ b/wafconf/url @@ -1,4 +1,4 @@ -\.(svn|htaccess|bash_history) +\.(svn|htaccess|bash_history|git) \.(bak|inc|old|mdb|sql|backup|java|class)$ (vhost|bbs|host|wwwroot|www|site|root|hytop|flashfxp).*\.rar (phpmyadmin|jmx-console|jmxinvokerservlet)