You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
</pre><a class="anchor" name="deviceatlas-separator"></a><a class="anchor" name="3-deviceatlas-separator"></a><a class="anchor" name="3.1-deviceatlas-separator"></a><a class="anchor" name="deviceatlas-separator (Global parameters)"></a><a class="anchor" name="deviceatlas-separator (Process management and security)"></a><div class="keyword"><b><a class="anchor" name="deviceatlas-separator"></a><a href="#3.1-deviceatlas-separator">deviceatlas-separator</a></b> <span style="color: #080"><char></span></div><pre class="text">Sets the character separator for the API properties results. This directive
7769
7772
is optional and set to | by default if not set.
7770
-
</pre><a class="anchor" name="expose-deprecated-directives"></a><a class="anchor" name="3-expose-deprecated-directives"></a><a class="anchor" name="3.1-expose-deprecated-directives"></a><a class="anchor" name="expose-deprecated-directives (Global parameters)"></a><a class="anchor" name="expose-deprecated-directives (Process management and security)"></a><div class="keyword"><b><a class="anchor" name="expose-deprecated-directives"></a><a href="#3.1-expose-deprecated-directives">expose-deprecated-directives</a></b></div><pre class="text">This statement must appear before using some directives tagged as deprecated
7773
+
</pre><a class="anchor" name="dns-accept-family"></a><a class="anchor" name="3-dns-accept-family"></a><a class="anchor" name="3.1-dns-accept-family"></a><a class="anchor" name="dns-accept-family (Global parameters)"></a><a class="anchor" name="dns-accept-family (Process management and security)"></a><div class="keyword"><b><a class="anchor" name="dns-accept-family"></a><a href="#3.1-dns-accept-family">dns-accept-family</a></b> <span style="color: #080"><family></span><span style="color: #008">[,...]</span></div><pre class="text">By default, DNS resolvers accept both IPv4 and IPv6 addresses. This can be
7774
+
influenced by the "<a href="#resolve-prefer">resolve-prefer</a>" keywords on server lines as well as the
7775
+
family argument to the "<a href="#do-resolve">do-resolve</a>" action, but that is only a preference,
7776
+
which does not block the other family from being used when it's alone. In
7777
+
some environments where dual-stack is not usable, stumbling on an unreachable
7778
+
IPv6-only DNS record can cause significant trouble as it will replace a
7779
+
previous IPv4 one which would possibly have continued to work till next
7780
+
request. The "<a href="#dns-accept-family">dns-accept-family</a>" global option permits to enforce usage of
7781
+
only one (or both) address families. The argument is a comma-delimited list
7782
+
of the following words:
7783
+
- "<a href="#ipv4">ipv4</a>": query and accept IPv4 addresses ("A" records)
7784
+
- "<a href="#ipv6">ipv6</a>": query and accept IPv6 addresses ("AAAA" records)
7785
+
- "auto": use IPv4, and IPv6 if the system has a default gateway for it.
7786
+
7787
+
When a single family is used, no request will be sent to resolvers for the
7788
+
other family, and any response for the othe family will be ignored. The
7789
+
default value is "ipv4,ipv6", which effectively enables both families.
The following keywords are usable in the ACME section:
10902
-
</pre><a class="anchor" name="account"></a><a class="anchor" name="3-account"></a><a class="anchor" name="3.13-account"></a><a class="anchor" name="account (Global parameters)"></a><a class="anchor" name="account (ACME)"></a><div class="keyword"><b><a class="anchor" name="account"></a><a href="#3.13-account">account</a></b> <span style="color: #080"><filename></span></div><pre class="text">Configure the path to the account key. The key need to be generated before
10923
+
</pre><a class="anchor" name="account-key"></a><a class="anchor" name="3-account-key"></a><a class="anchor" name="3.13-account-key"></a><a class="anchor" name="account-key (Global parameters)"></a><a class="anchor" name="account-key (ACME)"></a><div class="keyword"><b><a class="anchor" name="account-key"></a><a href="#3.13-account-key">account-key</a></b> <span style="color: #080"><filename></span></div><pre class="text">Configure the path to the account key. The key need to be generated before
10903
10924
launching HAProxy. If no account keyword is used, the acme section will try
10904
10925
to load a filename using the section name "<name>.account.key"
</pre><a class="anchor" name="contact"></a><a class="anchor" name="3-contact"></a><a class="anchor" name="3.13-contact"></a><a class="anchor" name="contact (Global parameters)"></a><a class="anchor" name="contact (ACME)"></a><div class="keyword"><b><a class="anchor" name="contact"></a><a href="#3.13-contact">contact</a></b> <span style="color: #080"><string></span></div><pre class="text">The contact email that will be associated to the account key in the CA.
10920
10941
</pre><a class="anchor" name="curves"></a><a class="anchor" name="3-curves"></a><a class="anchor" name="3.13-curves"></a><a class="anchor" name="curves (Global parameters)"></a><a class="anchor" name="curves (ACME)"></a><div class="keyword"><b><a class="anchor" name="curves"></a><a href="#3.13-curves">curves</a></b> <span style="color: #080"><string></span></div><pre class="text">When using the ECDSA keytype, configure the curves. The default is P-384.
10921
-
</pre><a class="anchor" name="keytype"></a><a class="anchor" name="3-keytype"></a><a class="anchor" name="3.13-keytype"></a><a class="anchor" name="keytype (Global parameters)"></a><a class="anchor" name="keytype (ACME)"></a><div class="keyword"><b><a class="anchor" name="keytype"></a><a href="#3.13-keytype">keytype</a></b> <span style="color: #080"><string></span></div><pre class="text">Configure the type of key that will be generated. Value can be either "RSA"
10922
-
or "ECDSA". You can also configure the "<span class="dropdown"><a class="dropdown-toggle" data-toggle="dropdown" href="#">curves<span class="caret"></span></a><ul class="dropdown-menu"><li class="dropdown-header">This keyword is available in sections :</li><li><a href="#curves%20%28ACME%29">ACME</a></li><li><a href="#curves%20%28Bind%20options%29">Bind options</a></li><li><a href="#curves%20%28Server%20and%20default-server%20options%29">Server and default-server options</a></li></ul></span>" for ECDSA and the number of
10923
-
"<a href="#bits">bits</a>" for RSA. By default EC384 keys are generated.
10924
-
</pre><a class="anchor" name="uri"></a><a class="anchor" name="3-uri"></a><a class="anchor" name="3.13-uri"></a><a class="anchor" name="uri (Global parameters)"></a><a class="anchor" name="uri (ACME)"></a><div class="keyword"><b><a class="anchor" name="uri"></a><a href="#3.13-uri">uri</a></b> <span style="color: #080"><string></span></div><pre class="text">This keyword configures the directory URL for the CA used by this acme
10925
-
section. This keyword is mandatory as there is no default uri.
10942
+
</pre><a class="anchor" name="directory"></a><a class="anchor" name="3-directory"></a><a class="anchor" name="3.13-directory"></a><a class="anchor" name="directory (Global parameters)"></a><a class="anchor" name="directory (ACME)"></a><div class="keyword"><b><a class="anchor" name="directory"></a><a href="#3.13-directory">directory</a></b> <span style="color: #080"><string></span></div><pre class="text">This keyword configures the directory URL for the CA used by this acme
10943
+
section. This keyword is mandatory as there is no default URL.
</div><a class="anchor" name="keytype"></a><a class="anchor" name="3-keytype"></a><a class="anchor" name="3.13-keytype"></a><a class="anchor" name="keytype (Global parameters)"></a><a class="anchor" name="keytype (ACME)"></a><div class="keyword"><b><a class="anchor" name="keytype"></a><a href="#3.13-keytype">keytype</a></b> <span style="color: #080"><string></span></div><pre class="text">Configure the type of key that will be generated. Value can be either "RSA"
10950
+
or "ECDSA". You can also configure the "<span class="dropdown"><a class="dropdown-toggle" data-toggle="dropdown" href="#">curves<span class="caret"></span></a><ul class="dropdown-menu"><li class="dropdown-header">This keyword is available in sections :</li><li><a href="#curves%20%28ACME%29">ACME</a></li><li><a href="#curves%20%28Bind%20options%29">Bind options</a></li><li><a href="#curves%20%28Server%20and%20default-server%20options%29">Server and default-server options</a></li></ul></span>" for ECDSA and the number of
10951
+
"<a href="#bits">bits</a>" for RSA. By default EC384 keys are generated.
configured hash-type. The result of the hash is divided by
11446
11467
the total weight of the running servers to designate which
11447
11468
server will receive the request. This can be used in place of
11448
-
"<span class="dropdown"><a class="dropdown-toggle" data-toggle="dropdown" href="#">source<span class="caret"></span></a><ul class="dropdown-menu"><li class="dropdown-header">This keyword is available in sections :</li><li><a href="#source%20%28Alphabetically%20sorted%20keywords%20reference%29">Alphabetically sorted keywords reference</a></li><li><a href="#source%20%28Server%20and%20default-server%20options%29">Server and default-server options</a></li></ul></span>", "<a href="#uri">uri</a>", "hdr()", "url_param()", "rdp-cookie" to make
11469
+
"<span class="dropdown"><a class="dropdown-toggle" data-toggle="dropdown" href="#">source<span class="caret"></span></a><ul class="dropdown-menu"><li class="dropdown-header">This keyword is available in sections :</li><li><a href="#source%20%28Alphabetically%20sorted%20keywords%20reference%29">Alphabetically sorted keywords reference</a></li><li><a href="#source%20%28Server%20and%20default-server%20options%29">Server and default-server options</a></li></ul></span>", "uri", "hdr()", "url_param()", "rdp-cookie" to make
11449
11470
use of a converter, refine the evaluation, or be used to
11450
11471
extract data from local variables for example. When the data
11451
11472
is not available, round robin will apply. This algorithm is
0 commit comments