Files
rproxy/roles/addconfig/templates/server.conf.j2

36 lines
1.3 KiB
Plaintext
Raw Normal View History

upstream {{ rproxy_service_name }}.{{ ansible_domain }} {
2024-06-30 18:30:49 +03:00
server {{ rproxy_service_address }}:{{ rproxy_service_port }};
}
2024-06-23 01:05:03 +03:00
server {
listen 80;
server_name {{ rproxy_service_name }}.{{ ansible_domain }};
2024-06-30 18:30:49 +03:00
access_log /var/log/nginx/{{ rproxy_service_name }}.access.log;
error_log /var/log/nginx/{{ rproxy_service_name }}.error.log;
2024-06-23 01:05:03 +03:00
return 301 https://$server_name$request_uri;
}
server {
listen 443 ssl;
server_name {{ rproxy_service_name }}.{{ ansible_domain }};
2024-06-30 18:30:49 +03:00
access_log /var/log/nginx/{{ rproxy_service_name }}.access.log;
error_log /var/log/nginx/{{ rproxy_service_name }}.error.log;
2025-08-15 00:13:45 +03:00
ssl_certificate /etc/nginx/certs/{{ rproxy_service_name }}.{{ ansible_domain }}.crt;
ssl_certificate_key /etc/nginx/certs/{{ rproxy_service_name }}.{{ ansible_domain }}.key;
2024-06-23 01:05:03 +03:00
ssl_protocols TLSv1.2;
ssl_ciphers EECDH:+AES256:-3DES:!RSA+AES:!RSA+3DES:!NULL:!RC4;
ssl_prefer_server_ciphers on;
proxy_connect_timeout 600s;
fastcgi_request_buffering off;
fastcgi_buffers 64 4K;
2024-06-30 18:30:49 +03:00
2024-06-23 01:05:03 +03:00
location / {
proxy_pass_header Server;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://{{ rproxy_service_name }}.{{ ansible_domain }}/;
2024-06-23 01:05:03 +03:00
}
}