# ban clients that are searching for scripts on the website to execute and exploit, # only using if php not in use [nginx-http-auth] enabled = true filter = nginx-http-auth port = http,https logpath = /var/log/nginx/*error.log