Advertisement
rvdr

NGINX CONF 2

May 12th, 2022
72
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.17 KB | None | 0 0
  1. map $http_upgrade $connection_upgrade {
  2. default upgrade;
  3. '' close;
  4. }
  5.  
  6.  
  7.  
  8. server {
  9. listen 443 ssl http2;
  10. server_name domain.dynv6.net;
  11. access_log /var/log/nginx/hass.access.log;
  12. error_log /var/log/nginx/hass.error.log;
  13. ssl_certificate /etc/letsencrypt/live/domain.dynv6.net/fullchain.pem;
  14. ssl_certificate_key /etc/letsencrypt/live/domain.dynv6.net/privkey.pem;
  15. ssl_dhparam /etc/ssl/certs/dhparam.pem;
  16.  
  17. listen [::]:443 ssl default_server http2;
  18. add_header Strict-Transport-Security "max-age=31536000; includeSubdomains";
  19. ssl_protocols TLSv1.2;
  20. ssl_ciphers "EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH:!aNULL:!eNULL:!EXPORT:!DES:!MD5:!PSK:!RC4";
  21. ssl_prefer_server_ciphers on;
  22. ssl_session_cache shared:SSL:50m;
  23.  
  24. proxy_buffering off;
  25.  
  26. location / {
  27. proxy_pass http://127.0.0.1:8123;
  28. proxy_set_header Host $host;
  29. proxy_redirect http:// https://;
  30. proxy_http_version 1.1;
  31. proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  32. proxy_set_header Upgrade $http_upgrade;
  33. proxy_set_header Connection $connection_upgrade;
  34. }
  35. }
  36.  
  37.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement