123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384 |
- ##
- # You should look at the following URL's in order to grasp a solid understanding
- # of Nginx configuration files in order to fully unleash the power of Nginx.
- # http://wiki.nginx.org/Pitfalls
- # http://wiki.nginx.org/QuickStart
- # http://wiki.nginx.org/Configuration
- #
- # Generally, you will want to move this file somewhere, and start with a clean
- # file but keep this around for reference. Or just disable in sites-enabled.
- #
- # Please see /usr/share/doc/nginx-doc/examples/ for more detailed examples.
- ##
-
- # Default server configuration
- #
- server {
- listen 80;
- listen [::]:80;
-
- server_name git.ataber.pw;
- return 301 https://$host$request_uri;
- }
-
- server {
- listen 443 ssl http2;
- listen [::]:443 ssl http2;
-
- ssl_certificate /etc/letsencrypt/live/ataber.pw/fullchain.pem;
- ssl_certificate_key /etc/letsencrypt/live/ataber.pw/privkey.pem;
- ssl_trusted_certificate /etc/letsencrypt/live/ataber.pw/chain.pem;
- ssl_dhparam /etc/ssl/private/dhparam.pem;
-
- add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
- add_header X-Xss-Protection "1; mode=block" always;
- add_header X-Content-Type-Options "nosniff" always;
- add_header X-Frame-Options "SAMEORIGIN" always;
- proxy_hide_header X-Powered-By;
- add_header 'Referrer-Policy' 'no-referrer';
- add_header Content-Security-Policy "frame-ancestors ataber.pw git.ataber.pw;";
-
- server_name git.ataber.pw;
-
- location / {
- proxy_pass http://unix:/home/alex/gitea.sock; // if not using sockets use http://localhost:3000;
- }
-
- # pass the PHP scripts to FastCGI server listening on 127.0.0.1:9000
- #
- #location ~ \.php$ {
- # include snippets/fastcgi-php.conf;
- #
- # # With php7.0-cgi alone:
- # fastcgi_pass 127.0.0.1:9000;
- # # With php7.0-fpm:
- # fastcgi_pass unix:/run/php/php7.0-fpm.sock;
- #}
-
- # deny access to .htaccess files, if Apache's document root
- # concurs with nginx's one
- #
- #location ~ /\.ht {
- # deny all;
- #}
- }
-
-
- # Virtual Host configuration for example.com
- #
- # You can move that to a different file under sites-available/ and symlink that
- # to sites-enabled/ to enable it.
- #
- #server {
- # listen 80;
- # listen [::]:80;
- #
- # server_name example.com;
- #
- # root /var/www/example.com;
- # index index.html;
- #
- # location / {
- # try_files $uri $uri/ =404;
- # }
- #}
|