summaryrefslogtreecommitdiff
path: root/playbooks.d/webserver-nginx
diff options
context:
space:
mode:
authorPatrick Spek <p.spek@tyil.nl>2022-08-25 22:04:58 +0200
committerPatrick Spek <p.spek@tyil.nl>2022-08-25 22:04:58 +0200
commit11fc905a2903f86b3f964c0ee766bcb4369cb21b (patch)
treec0b3931405c50225cd7197024bcab3f9eb2c1bbd /playbooks.d/webserver-nginx
parent1b6e2bf463ff3f386cd95d07dc01ed07eec4fdf3 (diff)
Add nginx hosts for myl.arr.tyil.nl
Diffstat (limited to 'playbooks.d/webserver-nginx')
-rw-r--r--playbooks.d/webserver-nginx/share/sites.d/http/nl.tyil.arr.myl13
-rw-r--r--playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.arr.myl23
2 files changed, 36 insertions, 0 deletions
diff --git a/playbooks.d/webserver-nginx/share/sites.d/http/nl.tyil.arr.myl b/playbooks.d/webserver-nginx/share/sites.d/http/nl.tyil.arr.myl
new file mode 100644
index 0000000..4a11124
--- /dev/null
+++ b/playbooks.d/webserver-nginx/share/sites.d/http/nl.tyil.arr.myl
@@ -0,0 +1,13 @@
+server {
+ listen 80;
+ listen [::]:80;
+
+ server_name myl.arr.tyil.nl;
+
+ include /etc/nginx/snippets.d/certbot.conf;
+ include /etc/nginx/snippets.d/headers.conf;
+
+ location / {
+ return 301 https://$host$request_uri;
+ }
+}
diff --git a/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.arr.myl b/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.arr.myl
new file mode 100644
index 0000000..36735f8
--- /dev/null
+++ b/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.arr.myl
@@ -0,0 +1,23 @@
+server {
+ listen 443 ssl http2;
+ listen [::]:443 ssl http2;
+
+ server_name myl.arr.tyil.nl;
+
+ ssl_certificate /etc/letsencrypt/live/myl.arr.tyil.nl/fullchain.pem;
+ ssl_certificate_key /etc/letsencrypt/live/myl.arr.tyil.nl/privkey.pem;
+
+ include /etc/nginx/snippets.d/certbot.conf;
+ #include /etc/nginx/snippets.d/headers.conf;
+ include /etc/nginx/snippets.d/ssl.conf;
+
+ location / {
+ proxy_http_version 1.1;
+ proxy_set_header Connection $http_connection;
+ proxy_set_header Host $host;
+ proxy_set_header Upgrade $http_upgrade;
+ proxy_set_header X-Forwarded-For $remote_addr;
+
+ proxy_pass http://10.57.100.7:8080;
+ }
+}