diff --git a/data/nginx/app.conf b/data/nginx/app.conf new file mode 100644 index 0000000..fd22dba --- /dev/null +++ b/data/nginx/app.conf @@ -0,0 +1,38 @@ +server { + listen 80; + server_name api.averba.ch; location / { + return 301 https://$host$request_uri; + } + + location /.well-known/acme-challenge/ { + root /var/www/certbot; + } + +} + +upstream personal-api { + ip_hash; + server personal-api:8000 +} + +server { + listen 443 ssl; + server_name api.averba.ch; + + ssl_certificate /etc/letsencrypt/live/api.averba.ch/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/api.averba.ch/privkey.pem; + include /etc/letsencrypt/options-ssl-nginx.conf; + ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; + + + location / { + proxy_pass http://personal-api/; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_connect_timeout 300s; + proxy_read_timeout 300s; + + } + listen 8000; + server_name localhost; +}