← All books
LogBranik · Open edition 0.2
Nginx Log Security
Build a local IP guard, signed policies, and a reliable analysis pipeline
A practical field guide to Nginx Open Source: local IP guards, signed policies, reliable log ingestion, and a Python laboratory with a Go/PostgreSQL production design.
Aleksandar Popovic · 20 lessons · 3 appendices · English
Explore notes from this book
The complete book
Contents.
Read at your own pace.
Every chapter is available in full.
Preface
Lessons
- 1. Understand the feedback loop3 min
- 2. Draw the trust boundaries3 min
- 3. Design around failure3 min
- 4. Run the laboratory3 min
- 5. Produce logs you can safely analyze3 min
- 6. Move events without losing their meaning3 min
- 7. Commit events before acknowledging them3 min
- 8. Connect ordinary Nginx to the guard3 min
- 9. Know whose address you are blocking3 min
- 10. Build a detector you can explain3 min
- 11. Sign policy, not transport assumptions3 min
- 12. Order updates across retries and restores3 min
- 13. Make expiry work without the central server3 min
- 14. Give operators precise controls3 min
- 15. Observe the guard as an operating system3 min
- 16. Move durable processing to PostgreSQL3 min
- 17. Preserve the fast path in a Go agent3 min
- 18. Test behavior at the boundary where it matters3 min
- 19. Diagnose failures in the right order3 min
- 20. Release a reproducible system3 min
Appendices
Aleksandar Popovic · Text CC BY 4.0 · Original code MIT. Licensing and attribution