diff --git a/sites-enabled/example.conf.tplm b/sites-enabled/example.conf.tplm index 6c470d0..588750f 100644 --- a/sites-enabled/example.conf.tplm +++ b/sites-enabled/example.conf.tplm @@ -1,18 +1,12 @@ resolver 127.0.0.11 valid=60s ipv6=off; resolver_timeout 10s; -server { - listen 80 default_server; - listen [::]:80 default_server; - rewrite ^(.*) https://$host$1 permanent; -} - server { listen 443 ssl; listen [::]:443 ssl; - server_name spve15.softsols.ru; - ssl_certificate /etc/nginx/ssl/live/softsols.ru/fullchain.pem; - ssl_certificate_key /etc/nginx/ssl/live/softsols.ru/privkey.pem; + server_name nginx1.example.com; + ssl_certificate /etc/nginx/ssl/live/nginx1.example.com/fullchain.pem; + ssl_certificate_key /etc/nginx/ssl/live/nginx1.example.com/privkey.pem; ssl_protocols TLSv1.2 TLSv1.3; ssl_ciphers HIGH:!aNULL:!MD5; @@ -20,7 +14,7 @@ server { include configuration/includes.conf; proxy_redirect off; - set $proxy_value https://172.17.0.1:59115; + set $proxy_value https://10.10.10.10:10; location / { proxy_pass $proxy_value; proxy_redirect off; @@ -34,3 +28,26 @@ server { send_timeout 3600s; } } + +server { + listen 443 ssl; + listen [::]:443 ssl; + server_name nginx2.example.com; + ssl_certificate /etc/nginx/ssl/live/nginx2.example.com/fullchain.pem; + ssl_certificate_key /etc/nginx/ssl/live/nginx2.example.com/privkey.pem; + + ssl_protocols TLSv1.2 TLSv1.3; + ssl_ciphers HIGH:!aNULL:!MD5; + + include configuration/includes.conf; + + set $proxy_value http://10.10.10.10:10; + location / { + proxy_pass $proxy_value; + proxy_redirect off; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + } +} \ No newline at end of file