- Rename repo/domain: attack-defense-platform / attackdefense.imrnes.team (all refs replaced)
- challenge_registry.json: single source of truth (28 challs across gemastik18/xvi/xvii)
- teams.py: registry-driven CHALLENGES, set_challenge_enabled, sync_challenge_runtime
(apply enable/disable to live teams: build/up or stop/remove + receiver restart)
- compose_gen.py: render per-team compose from canonical per-challenge templates
(image reuse, per-team ports 30xxx, flag mounts, passwords)
- gen_canonical_composes.py: canonical docker-compose.yml for all services
- import_new_challenges.py: import XVI/XVII services + EOL base image fixes
(debian:buster→bookworm, node:14→20, python:3.7-slim→3.11)
- receiver: xvi package (10 checkers) + xvii package (12 generic checkers),
Challenge base reads PASSWORD_<team_port> from env; gen_receiver_main.py
generates per-team main.py from registry
- main.py: /api/challenges returns full registry; PATCH /api/challenges/<name>
toggles enabled + applies to live teams
- index.html: 🏗️ Challenge Manager tab (toggle per challenge, grouped by set)
- SLA bonus now dynamic (all enabled challenges, not hardcoded 6)
38 lines
1.0 KiB
Nginx Configuration File
38 lines
1.0 KiB
Nginx Configuration File
server {
|
|
listen 80;
|
|
|
|
location / {
|
|
root /usr/share/nginx/html;
|
|
index index.html;
|
|
}
|
|
|
|
# Proxy for WebSocket and HTTP requests
|
|
location ~ ^/api/public {
|
|
proxy_pass http://tempest-poc:5000;
|
|
proxy_http_version 1.1;
|
|
|
|
# WebSocket-specific headers
|
|
proxy_set_header Upgrade $http_upgrade;
|
|
|
|
# Conditionally set the Connection header
|
|
set $connection_upgrade '';
|
|
if ($http_upgrade) {
|
|
set $connection_upgrade 'Upgrade';
|
|
}
|
|
proxy_set_header Connection $connection_upgrade;
|
|
|
|
proxy_buffering off;
|
|
proxy_cache off;
|
|
|
|
# Optional: Increase timeouts to handle WebSocket connections
|
|
proxy_read_timeout 3600;
|
|
proxy_send_timeout 3600;
|
|
proxy_connect_timeout 3600;
|
|
|
|
# Additional headers to pass
|
|
proxy_set_header Host $host;
|
|
proxy_set_header X-Real-IP $remote_addr;
|
|
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
|
proxy_set_header X-Forwarded-Proto $scheme;
|
|
}
|
|
} |