If `proxy` module is used, make sure this is set to thwart the [httpoxy](https://httpoxy.org/) attack: proxy_set_header Proxy ""; More detailed discussion at Nginx website: [Mitigating the HTTPoxy Vulnerability with NGINX](https://www.nginx.com/blog/mitigating-the-httpoxy-vulnerability-with-nginx)