内部文档
http://s1.in.aiwaly.com/M00/docs/haproxy/
Haproxy配置参数
http://cnblogs.com/wangbaigui/p/4408818.html
haproxy http和tcp代理详解
http://blog.sina.com.cn/s/blog_8f2ef1220102vq00.html
流量调整和限流技术
https://www.cnblogs.com/shanyou/p/4280546.html
高可用服务设计之二:Rate limiting 限流与降级
https://www.cnblogs.com/duanxz/p/3465559.html
Better Rate Limiting For All with HAProxy
https://blog.serverfault.com/2010/08/26/1016491873/
DDoS 攻击与防御:从原理到实践
https://www.cnblogs.com/163yun/archive/2018/06/01/9121857.html
haproxy json 自定义格式日志 并用rsyslog 收集
http://s1.in.aiwaly.com/M00/docs/haproxy/haproxy%20json%20%E8%87%AA%E5%AE%9A%E4%B9%89%E6%A0%BC%E5%BC%8F%E6%97%A5%E5%BF%97%20%E5%B9%B6%E7%94%A8rsyslog%20%E6%94%B6%E9%9B%86_%E5%B9%BF%E5%B7%9E%E5%BB%BA%E7%AB%99%E5%B0%8F%E6%88%B4BOTAO%E5%8D%9A%E5%AE%A2.html
haproxy配置文件的语法检查
不报错的状态如下
[root@node3 ~]# haproxy -c -f /etc/haproxy/haproxy.cfg
Configuration file is valid
Haproxy: 利用ACL限制某IP访问特定url
#仅允许目标IP访问特定地址
acl allow_host src 172.18.12.161
acl uag_api url_beg /uag/services/rest
http-request allow if uag_api allow_host
#只要不是特定地址,其他人可以随意访问
http-request allow if !uag_api
http-request deny
20190606补充:
tcp mode下,acl uag_api url_beg /uag/services/rest 无效。
https://blog.csdn.net/kimqcn4/article/details/90906103