home.conf 1.2 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849
  1. listen 80;
  2. server_name SERVER_NAME;
  3. return 301 https://$host$request_uri;
  4. }
  5. server {
  6. listen 443 ssl;
  7. server_name SERVER_NAME;
  8. ssl_certificate /etc/letsencrypt/live/SERVER_NAME/fullchain.pem;
  9. ssl_certificate_key /etc/letsencrypt/live/SERVER_NAME/privkey.pem;
  10. ssl_session_timeout 5m;
  11. ssl_protocols TLSv1.2 TLSv1.3;
  12. ssl_ciphers HIGH:!aNULL:!MD5;
  13. ssl_prefer_server_ciphers on;
  14. client_max_body_size 64m;
  15. location / {
  16. proxy_set_header Host $host;
  17. proxy_set_header X-Real-IP $remote_addr;
  18. proxy_set_header x-forwarded-for $proxy_add_x_forwarded_for;
  19. proxy_pass http://node:7000;
  20. }
  21. }
  22. server {
  23. listen 80;
  24. server_name www.SERVER_NAME;
  25. return 301 https://SERVER_NAME$request_uri;
  26. }
  27. server {
  28. listen 443 ssl;
  29. server_name www.SERVER_NAME;
  30. ssl_certificate /etc/letsencrypt/live/www.SERVER_NAME/fullchain.pem;
  31. ssl_certificate_key /etc/letsencrypt/live/www.SERVER_NAME/privkey.pem;
  32. ssl_session_timeout 5m;
  33. ssl_protocols TLSv1.2 TLSv1.3;
  34. ssl_ciphers HIGH:!aNULL:!MD5;
  35. ssl_prefer_server_ciphers on;
  36. client_max_body_size 64m;
  37. return 301 https://SERVER_NAME$request_uri;
  38. }