# Ansible managed frontend nova_novnc_console-front-1 bind 104.130.253.16:6080 ssl crt /etc/haproxy/ssl/haproxy_aio1-104.130.253.16.pem alpn h2,http/1.1 option httplog option forwardfor except 127.0.0.0/8 timeout client 60m http-request add-header X-Forwarded-Proto https mode http default_backend nova_novnc_console-back http-request deny if { path,url_dec -m sub /. } frontend nova_novnc_console-front-2 bind 172.29.236.101:6080 option httplog option forwardfor except 127.0.0.0/8 timeout client 60m mode http default_backend nova_novnc_console-back http-request deny if { path,url_dec -m sub /. } backend nova_novnc_console-back mode http balance source timeout server 60m stick-table type ipv6 size 256k expire 10s store http_err_rate(10s) http-request track-sc0 src http-request deny deny_status 429 if { sc_http_err_rate(0) gt 20 } !{ src 192.168.0.0/16 } !{ src 172.16.0.0/12 } !{ src 10.0.0.0/8 } option forwardfor option httpchk http-check send hdr User-Agent "osa-proxy-healthcheck" meth HEAD uri /vnc.html http-check expect status 200 server aio1-nova-api-container-d170d4ae 172.29.239.248:6080 check port 6080 inter 12000 rise 3 fall 3