Page MenuHomePhabricator

nginx cerb config
ActivePublic

Authored by revi on Dec 20 2020, 23:31.
server {
listen 80;
server_name cerb.revi.email;
#access_log off;
location /status/nginx {
stub_status on;
access_log off;
allow 127.0.0.1;
deny all;
}
location /status/fpm {
access_log off;
allow 127.0.0.1;
#allow 10.0.0.0/16;
deny all;
include fastcgi_params;
fastcgi_pass unix:/var/run/php/php7.3-fpm.sock;
}
location / {
return 301 https://$host$request_uri;
}
}
server {
listen 443 ssl;
server_name cerb.revi.email;
#access_log off;
root /var/www/cerb;
index index.php;
# Increase upload max size from default of 1MB
client_max_body_size 30m;
charset utf-8;
# SSL
ssl_certificate /etc/letsencrypt/live/cerb.revi.email/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/cerb.revi.email/privkey.pem;
ssl_protocols TLSv1.2;
ssl_prefer_server_ciphers on;
ssl_ciphers HIGH:!CAMELLIA:!RC4:!PSK:!aNULL:@STRENGTH;
ssl_dhparam /etc/ssl/certs/dhparam.pem;
# DNS
resolver 8.8.8.8 8.8.4.4 valid=300s;
resolver_timeout 5s;
# Always let people see the favicon file
location = /favicon\.ico {
allow all;
}
# Send PHP scripts to FPM
location ~ /(index|ajax)\.php$ {
proxy_connect_timeout 120;
proxy_send_timeout 120;
proxy_read_timeout 120;
fastcgi_split_path_info ^(.+\.php)(/.+)$;
fastcgi_pass unix:/var/run/php/php7.3-fpm.sock;
fastcgi_index index.php;
include fastcgi_params;
fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
}
location ~ \.php$ {
deny all;
}
# Send all other paths to the Devblocks front controller index.php
location / {
try_files $uri /index.php?$query_string;
}
}

Event Timeline

revi created this object in space Restricted Space.
revi edited the content of this paste. (Show Details)
revi shifted this object from the Restricted Space space to the S1 Public space.Dec 21 2020, 00:19
revi changed the visibility from "All Users" to "Public (No Login Required)".
revi mentioned this in Unknown Object (Maniphest Task).Jan 11 2021, 05:19