Skip to content

Commit c4a9dae

Browse files
aequitasmxsasha
authored andcommitted
Fix nginx config warnings
1 parent f077e64 commit c4a9dae

File tree

1 file changed

+28
-12
lines changed

1 file changed

+28
-12
lines changed

docker/webserver/nginx_templates/app.conf.template

Lines changed: 28 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -28,8 +28,10 @@ ssl_stapling_verify on;
2828

2929
# default server for http, primary used for ACME and https redirect
3030
server {
31-
listen 80 http2;
32-
listen [::]:80 http2;
31+
listen 80;
32+
listen [::]:80;
33+
34+
http2 on;
3335

3436
server_name ${INTERNETNL_DOMAINNAME} ~(nl|en|www|ipv6)\.${INTERNETNL_DOMAINNAME} ${REDIRECT_DOMAINS_LIST};
3537

@@ -49,8 +51,10 @@ server {
4951

5052
# http server for connection test, does not redirect to https
5153
server {
52-
listen 80 http2;
53-
listen [::]:80 http2;
54+
listen 80;
55+
listen [::]:80;
56+
57+
http2 on;
5458

5559
server_name ~(conn|(?<subdomain>en\.|nl\.|www\.)conn).${INTERNETNL_DOMAINNAME};
5660

@@ -87,8 +91,10 @@ server {
8791
}
8892
# http server for connection test XHR requests
8993
server {
90-
listen 80 http2;
91-
listen [::]:80 http2;
94+
listen 80;
95+
listen [::]:80;
96+
97+
http2 on;
9298

9399
server_name
94100
*.test-ns-signed.${INTERNETNL_DOMAINNAME}
@@ -114,8 +120,10 @@ server {
114120

115121
# No-www.org Class B compliance, see https://www.no-www.org/faq.php
116122
server {
117-
listen 443 ssl http2;
118-
listen [::]:443 ssl http2;
123+
listen 443 ssl;
124+
listen [::]:443 ssl;
125+
126+
http2 on;
119127

120128
server_name www.${INTERNETNL_DOMAINNAME} ~(nl|en|conn)\.www.${INTERNETNL_DOMAINNAME} ${REDIRECT_DOMAINS_LIST};
121129

@@ -149,8 +157,10 @@ server {
149157

150158
# default https server
151159
server {
152-
listen 443 ssl http2;
153-
listen [::]:443 ssl http2;
160+
listen 443 ssl;
161+
listen [::]:443 ssl;
162+
163+
http2 on;
154164

155165
server_name ${INTERNETNL_DOMAINNAME} ~(?<subdomain>nl\.|en\.|www\.|ipv6\.)${INTERNETNL_DOMAINNAME};
156166

@@ -275,8 +285,10 @@ server {
275285
# Temporary (1 year) exception for conn. subdomain to disable HSTS and redirect back to HTTP for
276286
# clients that accessed the HTTPS version in the past and got a HSTS set of 1 year.
277287
server {
278-
listen 443 ssl http2;
279-
listen [::]:443 ssl http2;
288+
listen 443 ssl;
289+
listen [::]:443 ssl;
290+
291+
http2 on;
280292

281293
server_name conn.${INTERNETNL_DOMAINNAME};
282294

@@ -309,6 +321,8 @@ server {
309321
listen 443 ssl default_server;
310322
listen [::]:443 ssl default_server;
311323

324+
http2 on;
325+
312326
ssl_reject_handshake on;
313327

314328
location / {
@@ -321,6 +335,8 @@ server {
321335
listen 80 default_server;
322336
listen [::]:80 default_server;
323337

338+
http2 on;
339+
324340
server_name _;
325341

326342
location / {

0 commit comments

Comments
 (0)