pleroma.nginx 1.04 KB
Newer Older
1 2 3
proxy_cache_path /tmp/pleroma-media-cache levels=1:2 keys_zone=pleroma_media_cache:10m max_size=10g
                 inactive=720m use_temp_path=off;

4 5 6 7 8 9 10 11 12 13 14 15 16 17
server {
       listen         80;
       server_name    example.tld;
       return         301 https://$server_name$request_uri;
}

server {
    listen 443;
    ssl on;
    ssl_session_timeout 5m;

    ssl_certificate           /etc/letsencrypt/live/exmaple.tld/fullchain.pem;
    ssl_certificate_key       /etc/letsencrypt/live/example.tld/privkey.pem;

Henry committed
18
    ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
19 20 21 22 23 24
    ssl_ciphers "HIGH:!aNULL:!MD5 or HIGH:!aNULL:!MD5:!3DES";
    ssl_prefer_server_ciphers on;

    server_name example.tld;

    location / {
25
        add_header 'Access-Control-Allow-Origin' '*';
26 27 28
        proxy_http_version 1.1;
        proxy_set_header Upgrade $http_upgrade;
        proxy_set_header Connection "upgrade";
29 30
        proxy_pass http://localhost:4000;
    }
31 32 33 34 35 36 37 38

    location /proxy {
        proxy_cache pleroma_media_cache;
        proxy_cache_lock on;
        proxy_pass http://localhost:4000;
    }

}