Webserver : nginx + docker
hostname : 5gwebui-beg
ipv4 : 100.10.8.6
ipv6 : ~~
Webroot : /var/www/html/
Web config files: /etc/nginx/nginx.conf
Config files :
- /opt/docker-compose.yml
- /etc/mysql/mysql.cnf
- ...
Listening Ports :
- 0.0.0.0:80 (nginx)
- 0.0.0.0:8080 (nginx)
- 0.0.0.0:3306 (mysql)
- 127.0.0.1:6379 (redis)
#[Restoring?]
script : $ cat rerun.sh
#!/bin/bash
sudo service apache2 restart cd /opt/ sudo docker-compose.yml ...
#[For WAF]
script : $ cat nginx.conf
[file content of nginx config for waf]
vuln-files: # 취약점 상세 내용은 깃에 올라간 웹 코드에 주석달아서 표시?
- /var/www/html/index.php (sqli, lfi)
: patch done (패치 작성 완료되면)
- /var/www/html/download.php (file download)
- /opt/run/app.py (ssti, xss)
- /root/some_backdoor (backdoor)
- ...