salt/states/roles/maintain/nginx-proxy/portal.conf

45 lines
979 B
Text

server {
listen 443 default_server;
server_name portal.actcur.com;
resolver {{resolver}};
set $certbot "https://salt.actcur.com";
ssl on;
ssl_certificate /etc/nginx/certs/portal.actcur.com/fullchain.pem;
ssl_certificate_key /etc/nginx/certs/portal.actcur.com/privkey.pem;
ssl_session_cache shared:SSL:10m;
location /.well-known/acme-challenge/ {
proxy_pass $certbot;
proxy_set_header Host $host;
}
location / {
root /srv/http;
}
error_log /var/log/nginx/portal_error.log;
access_log /var/log/nginx/portal_access.log;
}
server {
listen 80 default_server;
server_name portal.actcur.com;
resolver {{resolver}};
set $certbot "http://salt.actcur.com";
location /.well-known/acme-challenge/ {
proxy_pass $certbot;
proxy_set_header Host $host;
}
location / {
rewrite ^ https://$host$request_uri? permanent;
}
error_log /var/log/nginx/portal_error.log;
access_log /var/log/nginx/portal_access.log;
}