> just another question: it's possible to define an "allow hosts list" (IP or range of IP) for the phpmyadmin directory ?

     location ~ ^/phpmyadmin/.+\.php$ {
         try_files  /system/maintenance.html  $uri  =404;

         deny   all;

         fastcgi_pass backend;
         include /etc/nginx/fastcgi_params;
         fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
         fastcgi_param HTTPS on;

     location ~ \.php$ {

