salt/states/roles/maintain/nginx-proxy/portal.conf

41 lines
847 B
Text

server {
listen 443 default_server;
server_name portal.actcur.com;
resolver {{resolver}};
set $certbot "https://salt.actcur.com";
ssl on;
ssl_certificate /etc/nginx/certs/portal.actcur.com/fullchain.pem;
ssl_certificate_key /etc/nginx/certs/portal.actcur.com/privkey.pem;
ssl_session_cache shared:SSL:10m;
location /.well-known/acme-challenge/ {
proxy_pass $certbot;
proxy_set_header Host $host;
}
location / {
root /srv/http;
}
}
server {
listen 80 default_server;
server_name portal.actcur.com;
resolver {{resolver}};
set $certbot "http://salt.actcur.com";
location /.well-known/acme-challenge/ {
proxy_pass $certbot;
proxy_set_header Host $host;
}
location / {
rewrite ^ https://$host$request_uri? permanent;
}
}