Compare commits

..

1 Commits

Author SHA1 Message Date
789fb37106 desktop-bmv4v66 2024-01-01 17:12:09 -07:00
5 changed files with 82 additions and 140 deletions

1
.gitignore vendored Normal file
View File

@ -0,0 +1 @@
nginx-1.20.1

View File

@ -1,6 +1,6 @@
[req]
default_bits = 2048
default_keyfile = laundry.phares3757.redirectme.net.key
default_keyfile = desktop-bmv4v66.key
distinguished_name = req_distinguished_name
req_extensions = req_ext
x509_extensions = v3_ca
@ -17,7 +17,7 @@ organizationName_default = Phares
organizationalUnitName = organizationalunit
organizationalUnitName_default = Development
commonName = Common Name (e.g. server FQDN or YOUR name)
commonName_default = laundry.phares3757.redirectme.net
commonName_default = mike.desktop
commonName_max = 64
[req_ext]
@ -27,14 +27,11 @@ subjectAltName = @alt_names
subjectAltName = @alt_names
[alt_names]
DNS.1 = laundry.phares3757.redirectme.net
DNS.2 = dashkiosk.laundry.phares3757.redirectme.net
DNS.3 = gogs.laundry.phares3757.redirectme.net
DNS.4 = nextcloud.laundry.phares3757.redirectme.net
DNS.5 = photoprism.laundry.phares3757.redirectme.net
DNS.6 = pi-hole.laundry.phares3757.redirectme.net
DNS.7 = syncthing.laundry.phares3757.redirectme.net
DNS.8 = beelink.server
DNS.9 = beelink
DNS.10 = localhost
DNS.11 = 127.0.0.1
DNS.1 = mike.desktop
DNS.1 = desktop-bmv4v66
DNS.2 = localhost
DNS.3 = 127.0.0.1
# https://webscoot.io/blog/create-self-signed-certificate-ubuntu-windows-nginx/
# cd "C:\Program Files\Git\usr\bin"
# openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout L:\Git\NGINX-Conf\conf\includes\desktop-bmv4v66.key -out L:\Git\NGINX-Conf\conf\includes\desktop-bmv4v66.crt -config L:\Git\NGINX-Conf\conf\includes\desktop-bmv4v66.conf

View File

@ -0,0 +1,23 @@
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

View File

@ -0,0 +1,28 @@
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----

View File

@ -1,129 +1,22 @@
server {
listen 80 default_server;
listen [::]:80 default_server;
root /var/www/html;
index index.html index.htm index.nginx-debian.html;
server_name _;
location / {
try_files $uri $uri/ =404;
}
worker_processes 1;
events {
worker_connections 1024;
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
http {
include "includes/mime.types";
default_type application/octet-stream;
sendfile on;
keepalive_timeout 65;
server {
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:80/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
}
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name dashkiosk.laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:9400/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
}
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name gogs.laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:3000/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
}
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name nextcloud.laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:8081/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
}
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name photoprism.laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:2342/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
}
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name ~(pi-hole).laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:8005/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
}
}
server {
ssl_certificate 'laundry.phares3757.redirectme.net.crt';
ssl_certificate_key 'laundry.phares3757.redirectme.net.key';
listen 443 ssl http2;
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
listen [::]:443 ssl http2;
server_name syncthing.laundry.phares3757.redirectme.net;
location / {
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_pass http://localhost:8384/;
proxy_read_timeout 600s;
proxy_send_timeout 600s;
server_name localhost;
ssl_certificate "includes/desktop-bmv4v66.crt";
ssl_certificate_key "includes/desktop-bmv4v66.key";
ssl_protocols TLSv1.2 TLSv1.1 TLSv1;
# include "includes/html.conf";
location / { proxy_pass http://localhost:8384; }
error_page 500 502 503 504 /50x.html;
include "includes/html-error.conf";
}
}