Skip to content

Commit 77b1c7f

Browse files
committed
Rake SSL settings for CTOR into single config
1 parent 8b18f88 commit 77b1c7f

4 files changed

Lines changed: 9 additions & 20 deletions

File tree

ctor/etc/nginx/sites-available/default

Lines changed: 1 addition & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,11 +2,7 @@ server {
22
listen 443 ssl;
33
server_name codingteam.org.ru;
44
keepalive_timeout 60;
5-
ssl_certificate /etc/letsencrypt/live/loglist.net/fullchain.pem;
6-
ssl_certificate_key /etc/letsencrypt/live/loglist.net/privkey.pem;
7-
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
8-
ssl_ciphers "HIGH:!aNULL:!MD5:!kEDH";
9-
add_header Strict-Transport-Security 'max-age=15552000';
5+
include /etc/nginx/ssl.conf;
106

117
location /_logs/ {
128
proxy_set_header X-Forwarded-Host $host;

ctor/etc/nginx/sites-available/loglist

Lines changed: 2 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -21,11 +21,7 @@ server {
2121
listen 443 ssl;
2222
server_name loglist.net;
2323
keepalive_timeout 60;
24-
ssl_certificate /etc/letsencrypt/live/loglist.net/fullchain.pem;
25-
ssl_certificate_key /etc/letsencrypt/live/loglist.net/privkey.pem;
26-
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
27-
ssl_ciphers "HIGH:!aNULL:!MD5:!kEDH";
28-
add_header Strict-Transport-Security 'max-age=15552000';
24+
include /etc/nginx/ssl.conf;
2925

3026
location / {
3127
proxy_set_header X-Forwarded-Host $host;
@@ -41,11 +37,7 @@ server {
4137
listen 443 ssl;
4238
server_name *.loglist.net;
4339
keepalive_timeout 60;
44-
ssl_certificate /etc/letsencrypt/live/loglist.net/fullchain.pem;
45-
ssl_certificate_key /etc/letsencrypt/live/loglist.net/privkey.pem;
46-
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
47-
ssl_ciphers "HIGH:!aNULL:!MD5:!kEDH";
48-
add_header Strict-Transport-Security 'max-age=15552000';
40+
include /etc/nginx/ssl.conf;
4941

5042
location / {
5143
return 301 https://loglist.net$request_uri;

ctor/etc/nginx/sites-available/tales

Lines changed: 1 addition & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,11 +2,7 @@ server {
22
listen 443 ssl;
33
server_name tales.codingteam.org.ru;
44
keepalive_timeout 60;
5-
ssl_certificate /etc/letsencrypt/live/loglist.net/fullchain.pem;
6-
ssl_certificate_key /etc/letsencrypt/live/loglist.net/privkey.pem;
7-
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
8-
ssl_ciphers "HIGH:!aNULL:!MD5:!kEDH";
9-
add_header Strict-Transport-Security 'max-age=15552000';
5+
include /etc/nginx/ssl.conf;
106

117
location / {
128
alias /opt/codingteam/tales/;

ctor/etc/nginx/ssl.conf

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
1+
ssl_certificate /etc/letsencrypt/live/loglist.net/fullchain.pem;
2+
ssl_certificate_key /etc/letsencrypt/live/loglist.net/privkey.pem;
3+
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
4+
ssl_ciphers "HIGH:!aNULL:!MD5:!kEDH";
5+
add_header Strict-Transport-Security 'max-age=15552000';

0 commit comments

Comments
 (0)