TERMINAL EXPLOIT V2.1
#### main domain for bbmilano ##
server {
server_name bbmilano.co www.bbmilano.co mail.bbmilano.co;
listen 80;
listen [::]:80;
include conf.d/includes-optional/cloudflare.conf;
set $CPANEL_APACHE_PROXY_PASS $scheme://apache_backend_${scheme}_92_205_107_103;
# For includes:
set $CPANEL_APACHE_PROXY_IP 92.205.107.103;
set $CPANEL_APACHE_PROXY_SSL_IP 92.205.107.103;
set $CPANEL_SERVICE_SUBDOMAIN 0;
listen 443 ssl;
listen [::]:443 ssl;
http2 on;
ssl_certificate /var/cpanel/ssl/apache_tls/bbmilano.co/combined;
ssl_certificate_key /var/cpanel/ssl/apache_tls/bbmilano.co/combined;
ssl_protocols TLSv1.2 TLSv1.3;
proxy_ssl_protocols TLSv1.2 TLSv1.3;
ssl_prefer_server_ciphers on;
ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
proxy_ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
root "/home/bbmilano/public_html";
location /cpanelwebcall {
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass http://127.0.0.1:2082/cpanelwebcall;
}
location /Microsoft-Server-ActiveSync {
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass http://127.0.0.1:2090/Microsoft-Server-ActiveSync;
}
location = /favicon.ico {
allow all;
log_not_found off;
access_log off;
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
location = /robots.txt {
allow all;
log_not_found off;
access_log off;
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
location / {
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
if ( $http_cookie ~ "wordpress_logged_in_[a-zA-Z0-9]+" ) {
set $CPANEL_PROXY_CACHE off;
set $CPANEL_SKIP_PROXY_CACHING 1;
}
include conf.d/server-includes/*.conf;
include conf.d/users/bbmilano/*.conf;
include conf.d/users/bbmilano/bbmilano.co/*.conf;
}
server {
listen 80;
listen [::]:80;
listen 443 ssl;
listen [::]:443 ssl;
http2 on;
ssl_certificate /var/cpanel/ssl/apache_tls/bbmilano.co/combined;
ssl_certificate_key /var/cpanel/ssl/apache_tls/bbmilano.co/combined;
server_name cpanel.bbmilano.co cpcalendars.bbmilano.co cpcontacts.bbmilano.co webdisk.bbmilano.co webmail.bbmilano.co;
include conf.d/includes-optional/cloudflare.conf;
set $CPANEL_APACHE_PROXY_PASS $scheme://apache_backend_${scheme}_92_205_107_103;
# For includes:
set $CPANEL_APACHE_PROXY_IP 92.205.107.103;
set $CPANEL_APACHE_PROXY_SSL_IP 92.205.107.103;
set $CPANEL_SERVICE_SUBDOMAIN 1;
location /.well-known/cpanel-dcv {
root "/home/bbmilano/public_html";
disable_symlinks if_not_owner;
# pass to Apache
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
location /.well-known/pki-validation {
root "/home/bbmilano/public_html";
disable_symlinks if_not_owner;
# pass to Apache
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
location /.well-known/acme-challenge {
root "/home/bbmilano/public_html";
disable_symlinks if_not_owner;
# pass to Apache
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
location / {
# Force https for service subdomains
if ($scheme = http) {
return 301 https://$host$request_uri;
}
# no cache
proxy_cache off;
proxy_no_cache 1;
proxy_cache_bypass 1;
# pass to Apache
include conf.d/includes-optional/cpanel-proxy.conf;
proxy_pass $CPANEL_APACHE_PROXY_PASS;
}
}
[ CLOSE ]