This commit is contained in:
Stefan Wieczorek
2025-03-27 09:21:57 +01:00
parent 7f63677fda
commit 209818ab3c
2 changed files with 14 additions and 8 deletions

View File

@@ -22,8 +22,8 @@ server {
location @reverse_proxy { location @reverse_proxy {
proxy_pass {{reverse_proxy_url}}; proxy_pass {{reverse_proxy_url}};
proxy_http_version 1.1; proxy_http_version 1.1;
#proxy_ssl_server_name on; proxy_ssl_server_name on;
#proxy_ssl_name $host; proxy_ssl_name $host;
proxy_set_header X-Forwarded-Host $host; proxy_set_header X-Forwarded-Host $host;
proxy_set_header X-Forwarded-Server $host; proxy_set_header X-Forwarded-Server $host;
proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Real-IP $remote_addr;

View File

@@ -1,8 +1,12 @@
server { server {
listen 80; listen 80;
listen [::]:80; listen [::]:80;
listen 443 ssl http2; listen 443 quic;
listen [::]:443 ssl http2; listen 443 ssl;
listen [::]:443 quic;
listen [::]:443 ssl;
http2 on;
http3 off;
{{ssl_certificate_key}} {{ssl_certificate_key}}
{{ssl_certificate}} {{ssl_certificate}}
{{server_name}} {{server_name}}
@@ -12,20 +16,20 @@ server {
{{nginx_error_log}} {{nginx_error_log}}
if ($scheme != "https") { if ($scheme != "https") {
rewrite ^ https://$host$uri permanent; rewrite ^ https://$host$request_uri permanent;
} }
location @reverse_proxy { location @reverse_proxy {
proxy_pass {{reverse_proxy_url}}; proxy_pass {{reverse_proxy_url}};
proxy_http_version 1.1; proxy_http_version 1.1;
#proxy_ssl_server_name on; proxy_ssl_server_name on;
#proxy_ssl_name $host; proxy_ssl_name $host;
proxy_set_header X-Forwarded-Host $host; proxy_set_header X-Forwarded-Host $host;
proxy_set_header X-Forwarded-Server $host; proxy_set_header X-Forwarded-Server $host;
proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme; proxy_set_header X-Forwarded-Proto $scheme;
proxy_set_header Host $http_host; proxy_set_header Host $host;
proxy_set_header Upgrade $http_upgrade; proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection "Upgrade"; proxy_set_header Connection "Upgrade";
proxy_pass_request_headers on; proxy_pass_request_headers on;
@@ -41,6 +45,8 @@ server {
{{settings}} {{settings}}
include /etc/nginx/global_settings;
add_header Cache-Control no-transform; add_header Cache-Control no-transform;
index index.html; index index.html;