Commit 99425e089f
99425e089fc3aa0c07b50f2a8d476641149f08aa
parent: 4ef87fd445
Verified · cmc
cmc <hello@cleberg.net> · 2026-02-16 17:39 UTC
back out docker changes
Layout: unified · split
linux/nginx/etc/nginx/conf.d/ao.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name ao.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:9380; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name ao.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/art.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name art.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:3003; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name art.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/auth.conf
added
+42
| @@ -0,0 +1,42 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name auth.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | set $upstream http://127.0.0.1:9092; |
| |
20 | |
| |
21 | location / { |
| |
22 | proxy_pass $upstream; |
| |
23 | |
| |
24 | include custom.d/reverse_proxy/basic.conf; |
| |
25 | } |
| |
26 | |
| |
27 | location /api/verify { |
| |
28 | proxy_pass $upstream; |
| |
29 | } |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | } |
| |
32 | |
| |
33 | # ---------------------------------------------------------------------- |
| |
34 | # | Config file for non-secure host | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | server { |
| |
37 | listen [::]:80; |
| |
38 | listen 80; |
| |
39 | server_name auth.cleberg.net; |
| |
40 | |
| |
41 | return 301 https://$host$request_uri; |
| |
42 | } |
linux/nginx/etc/nginx/conf.d/br.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name br.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:3030; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name br.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/bt.conf
added
+46
| @@ -0,0 +1,46 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name bt.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | set $upstream http://127.0.0.1:9091; |
| |
20 | |
| |
21 | location /authelia { |
| |
22 | include custom.d/reverse_proxy/authelia.conf; |
| |
23 | } |
| |
24 | |
| |
25 | location / { |
| |
26 | proxy_pass $upstream; |
| |
27 | |
| |
28 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
29 | # include custom.d/reverse_proxy/basic.conf; |
| |
30 | proxy_pass_header X-bt-Session-Id; |
| |
31 | } |
| |
32 | |
| |
33 | include custom.d/security/robots_index_only.conf; |
| |
34 | # ---------------------------------------------------------------------- |
| |
35 | } |
| |
36 | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | # | Config file for non-secure host | |
| |
39 | # ---------------------------------------------------------------------- |
| |
40 | server { |
| |
41 | listen [::]:80; |
| |
42 | listen 80; |
| |
43 | server_name bt.cleberg.net; |
| |
44 | |
| |
45 | return 301 https://$host$request_uri; |
| |
46 | } |
linux/nginx/etc/nginx/conf.d/bw.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name bw.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:10416; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name bw.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/cc.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name cc.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:8111; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name cc.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/ddns.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name ddns.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://127.0.0.1:8097; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name ddns.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/docker.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name docker.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://127.0.0.1:3777; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name docker.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/gh.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name gh.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://192.168.0.251:3039; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name gh.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/ha.conf
added
+46
| @@ -0,0 +1,46 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name ha.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | set $upstream http://192.168.0.214:8123; |
| |
20 | |
| |
21 | location / { |
| |
22 | proxy_pass $upstream; |
| |
23 | proxy_set_header X-Forwarded-For $remote_addr; |
| |
24 | } |
| |
25 | |
| |
26 | location /api/websocket { |
| |
27 | proxy_pass $upstream; |
| |
28 | proxy_http_version 1.1; |
| |
29 | proxy_set_header Upgrade $http_upgrade; |
| |
30 | proxy_set_header Connection "upgrade"; |
| |
31 | } |
| |
32 | |
| |
33 | include custom.d/security/robots_index_only.conf; |
| |
34 | # ---------------------------------------------------------------------- |
| |
35 | } |
| |
36 | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | # | Config file for non-secure host | |
| |
39 | # ---------------------------------------------------------------------- |
| |
40 | server { |
| |
41 | listen [::]:80; |
| |
42 | listen 80; |
| |
43 | server_name ha.cleberg.net; |
| |
44 | |
| |
45 | return 301 https://$host$request_uri; |
| |
46 | } |
linux/nginx/etc/nginx/conf.d/hat.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name hat.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://192.168.0.251:3991; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name hat.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/irc.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name irc.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://192.168.0.251:9900; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name irc.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/ld.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name ld.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:3004; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name ld.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/lemmy.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name lemmy.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:10633; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name lemmy.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/lt.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name lt.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:5000; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name lt.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/mz.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name mz.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:3474; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name mz.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/paste.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name paste.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:8084; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name paste.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/pb.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name pb.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:8745; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | # include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name pb.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/photos.conf
added
+54
| @@ -0,0 +1,54 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name photos.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | # allow large file uploads |
| |
20 | client_max_body_size 50000M; |
| |
21 | |
| |
22 | # Set headers |
| |
23 | proxy_set_header Host $host; |
| |
24 | proxy_set_header X-Real-IP $remote_addr; |
| |
25 | proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; |
| |
26 | proxy_set_header X-Forwarded-Proto $scheme; |
| |
27 | |
| |
28 | # enable websockets: http://nginx.org/en/docs/http/websocket.html |
| |
29 | proxy_http_version 1.1; |
| |
30 | proxy_set_header Upgrade $http_upgrade; |
| |
31 | proxy_set_header Connection "upgrade"; |
| |
32 | proxy_redirect off; |
| |
33 | |
| |
34 | # set timeout |
| |
35 | proxy_read_timeout 600s; |
| |
36 | proxy_send_timeout 600s; |
| |
37 | send_timeout 600s; |
| |
38 | |
| |
39 | location / { |
| |
40 | proxy_pass http://127.0.0.1:2283; |
| |
41 | } |
| |
42 | # ---------------------------------------------------------------------- |
| |
43 | } |
| |
44 | |
| |
45 | # ---------------------------------------------------------------------- |
| |
46 | # | Config file for non-secure host | |
| |
47 | # ---------------------------------------------------------------------- |
| |
48 | server { |
| |
49 | listen [::]:80; |
| |
50 | listen 80; |
| |
51 | server_name photos.cleberg.net; |
| |
52 | |
| |
53 | return 301 https://$host$request_uri; |
| |
54 | } |
linux/nginx/etc/nginx/conf.d/pin.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name pin.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:8086; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name pin.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/piped.conf
added
+40
| @@ -0,0 +1,40 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name piped.cleberg.net pipedapi.cleberg.net pipedproxy.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:8077; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | proxy_set_header Host $host; |
| |
24 | # include custom.d/reverse_proxy/basic.conf; |
| |
25 | } |
| |
26 | |
| |
27 | include custom.d/security/robots_index_only.conf; |
| |
28 | # ---------------------------------------------------------------------- |
| |
29 | } |
| |
30 | |
| |
31 | # ---------------------------------------------------------------------- |
| |
32 | # | Config file for non-secure host | |
| |
33 | # ---------------------------------------------------------------------- |
| |
34 | server { |
| |
35 | listen [::]:80; |
| |
36 | listen 80; |
| |
37 | server_name piped.cleberg.net pipedapi.cleberg.net pipedproxy.cleberg.net; |
| |
38 | |
| |
39 | return 301 https://$host$request_uri; |
| |
40 | } |
linux/nginx/etc/nginx/conf.d/rd.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name rd.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:5758; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name rd.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/rimgo.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name rimgo.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:3869; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name rimgo.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/rl.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name rl.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://192.168.0.251:8983; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name rl.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/rss.conf
added
+58
| @@ -0,0 +1,58 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | upstream freshrss { |
| |
5 | server 192.168.0.251:8081; |
| |
6 | keepalive 64; |
| |
7 | } |
| |
8 | |
| |
9 | server { |
| |
10 | listen [::]:443 ssl; |
| |
11 | listen 443 ssl; |
| |
12 | http2 on; |
| |
13 | |
| |
14 | server_name rss.cleberg.net; |
| |
15 | |
| |
16 | include custom.d/tls/ssl_engine.conf; |
| |
17 | include custom.d/tls/certificate_files.conf; |
| |
18 | include custom.d/tls/policy_balanced.conf; |
| |
19 | include custom.d/basic.conf; |
| |
20 | |
| |
21 | # ---------------------------------------------------------------------- |
| |
22 | # | Custom rules & config for specific website | |
| |
23 | # ---------------------------------------------------------------------- |
| |
24 | location / { |
| |
25 | proxy_pass http://freshrss/; |
| |
26 | |
| |
27 | # include custom.d/reverse_proxy/basic.conf; |
| |
28 | |
| |
29 | add_header X-Frame-Options SAMEORIGIN; |
| |
30 | add_header X-XSS-Protection "1; mode=block"; |
| |
31 | proxy_redirect off; |
| |
32 | proxy_buffering off; |
| |
33 | proxy_set_header Host $host; |
| |
34 | proxy_set_header X-Real-IP $remote_addr; |
| |
35 | proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; |
| |
36 | proxy_set_header X-Forwarded-Proto $scheme; |
| |
37 | proxy_set_header X-Forwarded-Port $server_port; |
| |
38 | proxy_read_timeout 90; |
| |
39 | |
| |
40 | # Forward the Authorization header for the Google Reader API. |
| |
41 | proxy_set_header Authorization $http_authorization; |
| |
42 | proxy_pass_header Authorization; |
| |
43 | } |
| |
44 | |
| |
45 | include custom.d/security/robots_index_only.conf; |
| |
46 | # ---------------------------------------------------------------------- |
| |
47 | } |
| |
48 | |
| |
49 | # ---------------------------------------------------------------------- |
| |
50 | # | Config file for non-secure host | |
| |
51 | # ---------------------------------------------------------------------- |
| |
52 | server { |
| |
53 | listen [::]:80; |
| |
54 | listen 80; |
| |
55 | server_name rss.cleberg.net; |
| |
56 | |
| |
57 | return 301 https://$host$request_uri; |
| |
58 | } |
linux/nginx/etc/nginx/conf.d/search.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name search.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:9191; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | # include custom.d/reverse_proxy/basic.conf; |
| |
24 | proxy_set_header Host $host; |
| |
25 | proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; |
| |
26 | proxy_set_header Upgrade $http_upgrade; |
| |
27 | proxy_set_header Connection "upgrade"; |
| |
28 | proxy_http_version 1.1; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name search.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/send.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name send.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://192.168.0.251:1443; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name send.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/slash.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name slash.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://192.168.0.251:5231; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name slash.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/small.conf
added
+39
| @@ -0,0 +1,39 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name small.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location / { |
| |
20 | set $upstream http://127.0.0.1:8002; |
| |
21 | proxy_pass $upstream; |
| |
22 | |
| |
23 | include custom.d/reverse_proxy/basic.conf; |
| |
24 | } |
| |
25 | |
| |
26 | include custom.d/security/robots_index_only.conf; |
| |
27 | # ---------------------------------------------------------------------- |
| |
28 | } |
| |
29 | |
| |
30 | # ---------------------------------------------------------------------- |
| |
31 | # | Config file for non-secure host | |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | server { |
| |
34 | listen [::]:80; |
| |
35 | listen 80; |
| |
36 | server_name small.cleberg.net; |
| |
37 | |
| |
38 | return 301 https://$host$request_uri; |
| |
39 | } |
linux/nginx/etc/nginx/conf.d/ssh.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name ssh.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://127.0.0.1:8169; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name ssh.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/teddit.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name teddit.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://192.168.0.251:8181; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name teddit.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |
linux/nginx/etc/nginx/conf.d/wyl.conf
added
+44
| @@ -0,0 +1,44 @@ |
| |
1 | # ---------------------------------------------------------------------- |
| |
2 | # | Config file for host | |
| |
3 | # ---------------------------------------------------------------------- |
| |
4 | server { |
| |
5 | listen [::]:443 ssl; |
| |
6 | listen 443 ssl; |
| |
7 | http2 on; |
| |
8 | |
| |
9 | server_name wyl.cleberg.net; |
| |
10 | |
| |
11 | include custom.d/tls/ssl_engine.conf; |
| |
12 | include custom.d/tls/certificate_files.conf; |
| |
13 | include custom.d/tls/policy_balanced.conf; |
| |
14 | include custom.d/basic.conf; |
| |
15 | |
| |
16 | # ---------------------------------------------------------------------- |
| |
17 | # | Custom rules & config for specific website | |
| |
18 | # ---------------------------------------------------------------------- |
| |
19 | location /authelia { |
| |
20 | include custom.d/reverse_proxy/authelia.conf; |
| |
21 | } |
| |
22 | |
| |
23 | location / { |
| |
24 | set $upstream http://192.168.0.251:8840; |
| |
25 | proxy_pass $upstream; |
| |
26 | |
| |
27 | include custom.d/reverse_proxy/authelia_request.conf; |
| |
28 | include custom.d/reverse_proxy/basic.conf; |
| |
29 | } |
| |
30 | |
| |
31 | include custom.d/security/robots_index_only.conf; |
| |
32 | # ---------------------------------------------------------------------- |
| |
33 | } |
| |
34 | |
| |
35 | # ---------------------------------------------------------------------- |
| |
36 | # | Config file for non-secure host | |
| |
37 | # ---------------------------------------------------------------------- |
| |
38 | server { |
| |
39 | listen [::]:80; |
| |
40 | listen 80; |
| |
41 | server_name wyl.cleberg.net; |
| |
42 | |
| |
43 | return 301 https://$host$request_uri; |
| |
44 | } |