Guest User

Untitled

a guest
Dec 18th, 2018
123
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.93 KB | None | 0 0
  1. server {
  2. listen 8140 ssl;
  3. server_name puppet.example.com;
  4.  
  5. passenger_enabled on;
  6. passenger_set_cgi_param SSL_CLIENT_S_DN $ssl_client_s_dn;
  7. passenger_set_cgi_param SSL_CLIENT_VERIFY $ssl_client_verify;
  8.  
  9. access_log /var/log/nginx/puppet_access.log;
  10. error_log /var/log/nginx/puppet_error.log;
  11.  
  12. root /etc/puppet/rack/public;
  13.  
  14. ssl_certificate /var/lib/puppet/ssl/certs/puppet.example.com.pem;
  15. ssl_certificate_key /var/lib/puppet/ssl/private_keys/puppet.example.com.pem;
  16. ssl_crl /var/lib/puppet/ssl/ca/ca_crl.pem;
  17. ssl_client_certificate /var/lib/puppet/ssl/certs/ca.pem;
  18. ssl_prefer_server_ciphers on;
  19. ssl_verify_client optional;
  20. ssl_verify_depth 1;
  21. ssl_session_cache shared:SSL:128m;
  22. ssl_session_timeout 5m;
  23. }
Add Comment
Please, Sign In to add comment