From f130582030e7509d662b6d233fb220c9726c4428 Mon Sep 17 00:00:00 2001 From: David Rotermund Date: Mon, 15 Jul 2024 10:41:31 +0200 Subject: [PATCH] Update nginx.conf --- overleafnginx/nginx.conf | 71 +++++++++++++++++++++++----------------- 1 file changed, 41 insertions(+), 30 deletions(-) diff --git a/overleafnginx/nginx.conf b/overleafnginx/nginx.conf index 82559cf..b9e0977 100644 --- a/overleafnginx/nginx.conf +++ b/overleafnginx/nginx.conf @@ -1,32 +1,43 @@ - events {} - http { - server { - listen 80 default_server; - server_name _; - return 301 https://$host$request_uri; - } - server { - listen 443 ssl; - ssl_certificate /certs/nginx_certificate.pem; - ssl_certificate_key /certs/nginx_key.pem; - ssl_protocols TLSv1 TLSv1.1 TLSv1.2; - ssl_prefer_server_ciphers on; - ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5; - add_header Strict-Transport-Security "max-age=31536000; includeSubdomains;"; - server_tokens off; - client_max_body_size 50M; - - location / { - proxy_pass http://overleafserver:80; - proxy_set_header X-Forwarded-Proto $scheme; - proxy_http_version 1.1; - proxy_set_header Upgrade $http_upgrade; - proxy_set_header Connection "upgrade"; - proxy_set_header Host $host; - proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; - proxy_read_timeout 3m; - proxy_send_timeout 3m; - } - } +events {} +http { + server { + listen 80 default_server; + server_name _; + return 301 https://$host$request_uri; } + server { + listen 443 ssl; + ssl_certificate /certs/nginx_certificate.pem; + ssl_certificate_key /certs/nginx_key.pem; + ssl_protocols TLSv1 TLSv1.1 TLSv1.2; + ssl_prefer_server_ciphers on; + ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5; + add_header Strict-Transport-Security "max-age=31536000; includeSubdomains;"; + server_tokens off; + client_max_body_size 50M; + location / { + proxy_pass http://overleafserver:80; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection "upgrade"; + proxy_set_header Host $host; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_read_timeout 3m; + proxy_send_timeout 3m; + } + + location /register { + proxy_pass http://overleafpython:80; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_http_version 1.1; + proxy_set_header Upgrade $http_upgrade; + proxy_set_header Connection "upgrade"; + proxy_set_header Host $host; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_read_timeout 3m; + proxy_send_timeout 3m; + } + } +}