haproxy for IIS

2021-07-13 Thread Haproxy
Dear there, This is Jun from China. I am trying to setup haproxy to load balance IIS websites on 2 local Servers, it was achieved to load balance one website, however, I don't know how to load balance for many websites from the 2 servers where have the same websites running on. Could you guide o

fairly distribute shutdown session a few minutes before hard-stop-after expires

2021-07-13 Thread Joao Morais
Hello list, we have a HAProxy cluster in front of some chat-like applications. This HAProxy cluster is dynamically updated and now and then the instances need to be reloaded. Some of the applications behind this cluster have a few thousand of active users and, every time that the old instance

Re: set mss on backend site on version 1.7.9

2021-07-13 Thread Lukas Tribus
Hello Stefan, On Tue, 13 Jul 2021 at 14:10, Stefan Fuhrmann wrote: > > Hello all, > > > First, we can not change to newer version so fast within the project. > > We are having on old installation of haproxy (1.7.9) and we have the > need to configure tcp- mss- value on backend site. > > > > Is th

Re: [PATCH] JA3 TLS Fingerprinting

2021-07-13 Thread Marcin Deranek
Hi Tim, Will try to include reg-tests for converters (first need to read on how to do it). I'm affraid fetchers are not really suitable for regtest. Jump label was already indented by 1 space. Thank you for feedback Tim. Regards, Marcin Deranek On Mon, Jul 12, 2021 at 5:21 PM Tim Düsterhus wrot

Re: [PATCH] JA3 TLS Fingerprinting

2021-07-13 Thread Marcin Deranek
Hi Илья, Well, JA3 is one the approaches which seems to be a "standard" our there. If you want to build your own you are still able to do so if you wish, however using a "standard" gives you a benefit of interoperability between different software (eg. JA3 on Nginx is the same JA3 on HAProxy) and

Re: [PATCH] JA3 TLS Fingerprinting

2021-07-13 Thread Marcin Deranek
Hi Willy, On Mon, Jul 12, 2021 at 9:09 PM Willy Tarreau wrote: > > Just out of curiosity (feel free not to respond if you'd prefer not to), > how are you using this result ? Is it to try to figure outliers by > matching signatures against what the user-agent claims to be, or just > for monitorin

set mss on backend site on version 1.7.9

2021-07-13 Thread Stefan Fuhrmann
Hello all, First, we can not change to newer version so fast within the project. We are having on old installation of haproxy (1.7.9) and we have the need to configure tcp- mss- value on backend site. Is that possible to change the mss- value on backend site? How? Tia Stefan

Bid Writing, Fundraising and Volunteering Workshops

2021-07-13 Thread NFP Workshops
NFP WORKSHOPS Affordable Training Courses Bid Writing: The Basics Do you know the most common reasons for rejection? Are you gathering the right evidence? Are you making the right arguments? Are you using the right terminology? Are your numbers right? Are you learning from rejections?

Re : haproxy.com : Current Issues in Sustainable Site Design..

2021-07-13 Thread Natasa Hunter
Dear *haproxy.com *Owner, I am *Natasa Hunter*, consultant for one of the leading web design & development agency. We are dedicated to help *Start-ups, SMEs & Large Enterprises* for *website design, application development* & marketing solutions. Inbox me your message

Restricting a backend to certain IPs

2021-07-13 Thread Stephan Seitz
Hello! I have a frontend configuration that sends requests to different backends according to the host header. Something like: use_backend backendZ if { hdr(Host) -i } This is working fine, but now one such rule should only allowed if the clients are from a certain ip range. According to