From bdec87840a5cc8f1a6c51e7f1cc7851824b2d59d Mon Sep 17 00:00:00 2001 From: deflax Date: Thu, 6 Feb 2025 15:28:59 +0000 Subject: [PATCH] set x-forwarded-for as the only allowed proxy header --- src/api/Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/api/Dockerfile b/src/api/Dockerfile index 2eeade5..18692a6 100644 --- a/src/api/Dockerfile +++ b/src/api/Dockerfile @@ -19,4 +19,4 @@ COPY . . EXPOSE 8080 -CMD [ "waitress-serve", "--port=8080", "--trusted-proxy='*'", "--trusted-proxy-headers='x-forwarded-for x-forwarded-proto x-forwarded-port'", "--log-untrusted-proxy-headers", "--threads=16", "--call", "api:create_app" ] \ No newline at end of file +CMD [ "waitress-serve", "--port=8080", "--trusted-proxy='*'", "--trusted-proxy-headers=x-forwarded-for", "--log-untrusted-proxy-headers", "--threads=16", "--call", "api:create_app" ] \ No newline at end of file