confs:nginx

Nginx

  • conf.d/proxy.conf
proxy_redirect          off;
proxy_set_header        Host            $host;
proxy_set_header        X-Real-IP       $remote_addr;
proxy_set_header        X-Forwarded-For $proxy_add_x_forwarded_for;
client_max_body_size    10m;
client_body_buffer_size 128k;
client_header_buffer_size 64k;
proxy_connect_timeout   90;
proxy_send_timeout      90;
proxy_read_timeout      90;
proxy_buffer_size   16k;
proxy_buffers       32   16k;
proxy_busy_buffers_size 64k;
  • sites-available/reverse-proxy
server {
	listen  <IP PROXY>:443;
	server_name  <DNS proxy>;

	ssl on;
	ssl_certificate /etc/nginx/ssl/server.pem;
	ssl_certificate_key /etc/nginx/ssl/server.key;
	ssl_protocols  TLSv1 TLSv1.1 TLSv1.2;
	ssl_ciphers HIGH:!aNULL:!eNULL:!EXPORT:!CAMELLIA:!DES:!MD5:!PSK:!RC4;
	ssl_prefer_server_ciphers on;
	keepalive_timeout    60;
	ssl_session_cache    shared:SSL:10m;
	ssl_session_timeout  10m;

	access_log  /var/log/nginx/wab-ssl.access.log;
	error_log  /var/log/nginx/wab-ssl.error.log debug;

	location / {
		proxy_pass         https://<IP VSPHERE>;
	}

	error_page   500 502 503 504  /50x.html;
	location = /50x.html {
		root   /var/www/nginx-default;
	}
}
  • http → https
server {
    listen <IP PROXY>:80;
    return 301 https://$host$request_uri;
}
  • confs/nginx.txt
  • Last modified: 2024/10/14 20:59
  • by 127.0.0.1