403Webshell
Server IP : 185.252.147.100  /  Your IP : 216.73.216.196
Web Server : nginx/1.27.3
System : Linux mitrofanov.ru 6.1.0-37-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.140-1 (2025-05-22) x86_64
User : mitr ( 1000)
PHP Version : 8.2.29
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : OFF
Directory :  /www/enabled/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /www/enabled/mitrofanov.ru.conf
#fastcgi_cache_path /var/cache/nginx/mitrofanov levels=1:2 keys_zone=mitrofanov:60m max_size=10M inactive=60m use_temp_path=off;

    server {

server_name mitrofanov.ru;

        listen 443 quic;
        listen 443 ssl;
        listen [::]:443 ssl;
        listen [::]:443 quic;

root /www/html/mitrofanov.ru/public;

more_set_headers 'Referrer-Policy : no-referrer-when-downgrade';

access_log syslog:server=unix:/dev/log,tag=mitrofanov,nohostname main;

        if ($bad_user_agent) {return 444;}
        if ($da_block) {return 444;}
        if ($bad_referer) {return 444;}

more_set_headers 'X-Robots-Tag: $robots';

        include /www/nginx/error_404.conf;

        include /www/nginx/error_server.conf;

        include /www/nginx/favicon.conf;

        include /www/nginx/google_prefetch.conf;

        include /www/nginx/wp_common.conf;

        location / {
            limit_except GET HEAD POST { deny all; }
            
            include  /www/nginx/headers.conf;

            add_header Content-Security-Policy  "default-src 'self' https: data: 'unsafe-inline'; frame-src 'self' yandex.ru; frame-ancestors 'self'; form-action 'self'; script-src 'self' blob: 'unsafe-inline' 'unsafe-eval' *.yandex.ru ;" always;

            location ~ ^[^.]*$ {

                fastcgi_param SCRIPT_FILENAME $document_root/index.php;
                include  /www/nginx/fastcgi.conf;

                #fastcgi_cache       mitrofanov;
                #fastcgi_cache_valid 404 502 503 5m;
                #fastcgi_cache_valid 200 301 302 60m;
                #fastcgi_cache_valid any 1m;
                #include  /www/nginx/fastcgi_cache.conf;
                #more_set_headers 'X-FastCGI-Cache : $upstream_cache_status';
            }

# location ~ ^/wp-(?:cron|mail|signup)\.php$ {
#                 fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
#                 include  /www/nginx/fastcgi.conf;
#             }

            location ^~ /wp-json/ {
                if ($logged_out) { return 403; }
                limit_except GET HEAD POST OPTIONS { deny all; }
                fastcgi_param SCRIPT_FILENAME $document_root/index.php;
                include  /www/nginx/fastcgi.conf;
            }

            location ~ \.php$ {
                return 404;
            }
        }

#Yoast SEO Sitemaps
      location ~ ([^/]*)sitemap(.*).x(m|s)l$ {
            ## this rewrites sitemap.xml to /sitemap_index.xml
            rewrite ^/sitemap.xml$ /sitemap_index.xml permanent;
            ## this makes the XML sitemaps work
            rewrite ^/([a-z]+)?-?sitemap.xsl$ /index.php?yoast-sitemap-xsl=$1 last;
            rewrite ^/sitemap_index.xml$ /index.php?sitemap=1 last;
            rewrite ^/([^/]+?)-sitemap([0-9]+)?.xml$ /index.php?sitemap=$1&sitemap_n=$2 last;
            ## The following lines are optional for the premium extensions
            ## News SEO
            #rewrite ^/news-sitemap.xml$ /index.php?sitemap=wpseo_news last;
            ## Local SEO
            #rewrite ^/locations.kml$ /index.php?sitemap=wpseo_local_kml last;
            #rewrite ^/geo-sitemap.xml$ /index.php?sitemap=wpseo_local last;
            ## Video SEO
            #rewrite ^/video-sitemap.xsl$ /index.php?yoast-sitemap-xsl=video last;
      }
      
        include  /www/nginx/wp_sitemap.conf;

        include  /www/nginx/static.conf;

    }

#
# Redirect all www to non-www
#

    server {
        listen 443 quic;
        listen 443 ssl;
        listen [::]:443 ssl;
        listen [::]:443 quic;
        server_name www.mitrofanov.ru;
        return 301 https://mitrofanov.ru$request_uri;
    }

    server {
        listen 80;
        listen [::]:80;
        server_name mitrofanov.ru www.mitrofanov.ru;

        more_set_headers 'Strict-Transport-Security : max-age=31536000; includeSubDomains; preload';

        return 301 https://mitrofanov.ru$request_uri;
    }

Youez - 2016 - github.com/yon3zu
LinuXploit