diff options
author | Toby Jaffey <toby@ringtailsoftware.co.uk> | 2022-12-12 10:26:38 +0000 |
---|---|---|
committer | Toby Jaffey <toby@ringtailsoftware.co.uk> | 2022-12-12 10:26:38 +0000 |
commit | 4afa513dced3b9ef024bc366b4fc884802730d50 (patch) | |
tree | 51098e478054a66439e98dfab89cbbedf5d9f5c0 /examples/nginx-alpine-ssl/default.conf | |
parent | aa82e14bc7e7a3770feb23446d1a843d97213ccf (diff) |
Add docker-compose support, so a working development server with HTTPS can be started with:
docker-compose build && docker-compose up
Diffstat (limited to 'examples/nginx-alpine-ssl/default.conf')
-rw-r--r-- | examples/nginx-alpine-ssl/default.conf | 89 |
1 files changed, 89 insertions, 0 deletions
diff --git a/examples/nginx-alpine-ssl/default.conf b/examples/nginx-alpine-ssl/default.conf new file mode 100644 index 0000000..22db0df --- /dev/null +++ b/examples/nginx-alpine-ssl/default.conf @@ -0,0 +1,89 @@ +server { + listen 80 default_server; + listen [::]:80 default_server; + listen 443 ssl http2 default_server; + listen [::]:443 ssl http2 default_server; + ssl_certificate /etc/ssl/certs/nginx-selfsigned.crt; + ssl_certificate_key /etc/ssl/private/nginx-selfsigned.key; + + location /.well-known/webfinger { + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection "upgrade"; + proxy_redirect off; + proxy_connect_timeout 90; + proxy_send_timeout 90; + proxy_read_timeout 90; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_set_header Proxy ""; + proxy_pass_header Server; + proxy_buffering on; + tcp_nodelay on; + proxy_pass http://snac:8001; + proxy_set_header Host $http_host; + } + + location /.well-known/nodeinfo { + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection "upgrade"; + proxy_redirect off; + proxy_connect_timeout 90; + proxy_send_timeout 90; + proxy_read_timeout 90; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_set_header Proxy ""; + proxy_pass_header Server; + proxy_buffering on; + tcp_nodelay on; + proxy_pass http://snac:8001; + proxy_set_header Host $http_host; + } + + location / { + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection "upgrade"; + proxy_redirect off; + proxy_connect_timeout 90; + proxy_send_timeout 90; + proxy_read_timeout 90; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_set_header Proxy ""; + proxy_pass_header Server; + proxy_buffering on; + tcp_nodelay on; + proxy_pass http://snac:8001; + proxy_set_header Host $http_host; + } + + location /fedi/ { + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection "upgrade"; + proxy_redirect off; + proxy_connect_timeout 90; + proxy_send_timeout 90; + proxy_read_timeout 90; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_set_header Proxy ""; + proxy_pass_header Server; + proxy_buffering on; + tcp_nodelay on; + proxy_pass http://snac:8001; + proxy_set_header Host $http_host; + } +} + |