Files
2023-01-25 20:43:07 +01:00

1.0 KiB

Generate CAPI credentials (only for alone mode)

You need to create a crowdsec API credentials for the CAPI. You can follow the documentation here: https://docs.crowdsec.net/docs/central_api/intro

curl -X POST "https://api.crowdsec.net/v2/watchers" -H  "accept: application/json" -H  "Content-Type: application/json" -d "{ \"password\": \"PASSWORD\",  \"machine_id\": \"LOGIN\"}"

These CAPI credentials must be set in your docker-compose.yml or in your config files

...
whoami:
  labels:
    - "traefik.http.middlewares.crowdsec.plugin.bouncer.enabled=true"
    - "traefik.http.middlewares.crowdsec.plugin.bouncer.crowdsecMode=alone"
    - "traefik.http.middlewares.crowdsec.plugin.bouncer.crowdsecCapiMachineId=LOGIN"
    - "traefik.http.middlewares.crowdsec.plugin.bouncer.crowdsecCapiPassword=PASSWORD"
    - "traefik.http.middlewares.crowdsec.plugin.bouncer.crowdsecCapiScenarios=crowdsecurity/http-generic-bf,crowdsecurity/http-xss-probing,..."

You can then run all the containers:

docker-compose up -d