From c54b22d7ab837b36b31275ae2d90c57867c00784 Mon Sep 17 00:00:00 2001 From: xavye Date: Sun, 4 Jan 2026 13:43:14 +0000 Subject: [PATCH] Ajouter services/nginx/nginx-ui-reverse-proxy.conf --- services/nginx/nginx-ui-reverse-proxy.conf | 39 ++++++++++++++++++++++ 1 file changed, 39 insertions(+) create mode 100644 services/nginx/nginx-ui-reverse-proxy.conf diff --git a/services/nginx/nginx-ui-reverse-proxy.conf b/services/nginx/nginx-ui-reverse-proxy.conf new file mode 100644 index 0000000..be7125d --- /dev/null +++ b/services/nginx/nginx-ui-reverse-proxy.conf @@ -0,0 +1,39 @@ +ap $http_upgrade $connection_upgrade { + default upgrade; + '' close; +} +server { + server_name nginx.ascoetpi.ovh; + listen 443 ssl; + listen [::]:443 ssl ipv6only=on; + ssl_certificate /etc/nginx/ssl/nginx.ascoetpi.ovh_P256/fullchain.cer; + ssl_certificate_key /etc/nginx/ssl/nginx.ascoetpi.ovh_P256/private.key; + include /etc/letsencrypt/options-ssl-nginx.conf; + ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; + location / { + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection $connection_upgrade; + proxy_pass http://127.0.0.1:9000; + } + location ~ /.well-known/acme-challenge { + proxy_set_header Host $host; + proxy_set_header X-Real_IP $remote_addr; + proxy_set_header X-Forwarded-For $remote_addr:$remote_port; + proxy_pass http://127.0.0.1:9180; + } +} +server { + if ($host = nginx.ascoetpi.ovh) { + return 301 https://$host$request_uri; + } + # managed by Certbot + listen 80; + listen [::]:80; + server_name nginx.ascoetpi.ovh; + return 404; +} \ No newline at end of file