From 6ca2a42da96da6fee267a164b3a5da5bf73cfe1d Mon Sep 17 00:00:00 2001 From: GoEdgeLab Date: Tue, 2 Feb 2021 15:29:27 +0800 Subject: [PATCH] =?UTF-8?q?=E5=8F=96=E6=B6=88WAF=E8=A7=84=E5=88=99?= =?UTF-8?q?=E9=87=8C=E7=9A=84=E9=BB=91=E7=99=BD=E5=90=8D=E5=8D=95?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- internal/waf/template.go | 58 ---------------------------------------- 1 file changed, 58 deletions(-) diff --git a/internal/waf/template.go b/internal/waf/template.go index 82e4abe..83ffe83 100644 --- a/internal/waf/template.go +++ b/internal/waf/template.go @@ -5,64 +5,6 @@ func Template() *WAF { waf.Id = "template" waf.IsOn = true - // black list - { - group := NewRuleGroup() - group.IsOn = false - group.IsInbound = true - group.Name = "白名单" - group.Code = "whiteList" - group.Description = "在此名单中的IP地址可以直接跳过防火墙设置" - - { - - set := NewRuleSet() - set.IsOn = true - set.Name = "IP白名单" - set.Code = "9001" - set.Connector = RuleConnectorOr - set.Action = ActionAllow - set.AddRule(&Rule{ - Param: "${remoteAddr}", - Operator: RuleOperatorMatch, - Value: `127\.0\.0\.1|0\.0\.0\.0`, - IsCaseInsensitive: false, - }) - group.AddRuleSet(set) - } - - waf.AddRuleGroup(group) - } - - // black list - { - group := NewRuleGroup() - group.IsOn = false - group.IsInbound = true - group.Name = "黑名单" - group.Code = "blackList" - group.Description = "在此名单中的IP地址直接阻止" - - { - - set := NewRuleSet() - set.IsOn = true - set.Name = "IP黑名单" - set.Code = "10001" - set.Connector = RuleConnectorOr - set.Action = ActionBlock - set.AddRule(&Rule{ - Param: "${remoteAddr}", - Operator: RuleOperatorMatch, - Value: `1\.1\.1\.1|2\.2\.2\.2`, - IsCaseInsensitive: false, - }) - group.AddRuleSet(set) - } - - waf.AddRuleGroup(group) - } - // xss { group := NewRuleGroup()