NGINX Reverse Proxy Konfiguration für Typo3
von heisenberg- SNIPPET_TEXT:
-
- server {
- listen 1.2.3.4:80 default_server;
- server_name domain.org www.domain.org;
- return 301 https://www.domain.org$uri;
- }
- server {
- listen 1.2.3.4:443 ssl;
- server_name domain.org;
- ssl_certificate /etc/ssl/private/domain.org/bundle.pem;
- ssl_certificate_key /etc/ssl/private/domain.org/domain.org.key;
- ssl_session_cache builtin:1000 shared:SSL:10m;
- ssl_protocols TLSv1 TLSv1.1 TLSv1.2 TLSv1.3;
- ssl_ciphers HIGH:!aNULL:!eNULL:!EXPORT:!CAMELLIA:!DES:!MD5:!PSK:!RC4;
- ssl_prefer_server_ciphers on;
- return 301 https://www.domain.org$uri;
- }
- server {
- listen 1.2.3.4:443 ssl;
- server_name www.domain.org;
- ssl_certificate /etc/ssl/private/www.domain.org/bundle.pem;
- ssl_certificate_key /etc/ssl/private/www.domain.org/domain.org.key;
- ssl_session_cache builtin:1000 shared:SSL:10m;
- ssl_protocols TLSv1 TLSv1.1 TLSv1.2 TLSv1.3;
- ssl_ciphers HIGH:!aNULL:!eNULL:!EXPORT:!CAMELLIA:!DES:!MD5:!PSK:!RC4;
- ssl_prefer_server_ciphers on;
- location / {
- proxy_pass http://127.0.0.1:8080;
- proxy_set_header Host $http_host; # required for docker client's sake
- proxy_set_header X-Real-IP $remote_addr; # pass on real client's IP
- proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
- proxy_set_header X-Forwarded-Proto https;
- proxy_read_timeout 900;
- proxy_http_version 1.1;
- proxy_set_header Upgrade $http_upgrade;
- proxy_set_header Connection "Upgrade";
- }
- }
Quellcode
Hier kannst du den Code kopieren und ihn in deinen bevorzugten Editor einfügen. PASTEBIN_DOWNLOAD_SNIPPET_EXPLAIN