From 60546f7a6caa5ce9af91c174d3ad5fba16451549 Mon Sep 17 00:00:00 2001 From: Claude Date: Sat, 22 Nov 2025 13:10:28 +0000 Subject: [PATCH] fix: Complete SearXNG bot detection bypass configuration - Add real_ip config to settings.yml to trust proxy headers - Update limiter.toml to allow all IPs (0.0.0.0/0 and ::/0) - Re-add limiter.toml volume mount (file now exists) - Add localhost range (127.0.0.0/8) to pass_ip list --- docker-compose.yml | 1 + searxng/limiter.toml | 10 ++++++++-- searxng/settings.yml | 5 +++++ 3 files changed, 14 insertions(+), 2 deletions(-) diff --git a/docker-compose.yml b/docker-compose.yml index 426889c..f695295 100644 --- a/docker-compose.yml +++ b/docker-compose.yml @@ -62,6 +62,7 @@ services: - SEARXNG_SECRET=priceflow-searxng-secret volumes: - ./searxng/settings.yml:/etc/searxng/settings.yml:ro + - ./searxng/limiter.toml:/etc/searxng/limiter.toml:ro networks: - nginx_default diff --git a/searxng/limiter.toml b/searxng/limiter.toml index 49dd32f..754c10f 100644 --- a/searxng/limiter.toml +++ b/searxng/limiter.toml @@ -1,13 +1,19 @@ # SearXNG rate limiter configuration -# Disabled for internal use +# Disabled for internal use in PriceFlow [botdetection.ip_limit] -# Disable rate limiting for internal Docker network +# Disable IP rate limiting completely link_token = false [botdetection.ip_lists] +# Allow all private network ranges + localhost pass_ip = [ + "0.0.0.0/0", + "127.0.0.0/8", "192.168.0.0/16", "172.16.0.0/12", "10.0.0.0/8", + "::/0", ] +# No blocked IPs +block_ip = [] diff --git a/searxng/settings.yml b/searxng/settings.yml index c9b5d3d..98108d6 100644 --- a/searxng/settings.yml +++ b/searxng/settings.yml @@ -10,6 +10,11 @@ server: port: 8080 bind_address: "0.0.0.0" method: "GET" + # Trust all proxies for X-Forwarded-For header + real_ip: + x_for: 1 + ipv4_prefix: 32 + ipv6_prefix: 128 # Disable bot detection completely redis: