@@ -28,8 +28,10 @@ ssl_stapling_verify on;
28
28
29
29
# default server for http, primary used for ACME and https redirect
30
30
server {
31
- listen 80 http2;
32
- listen [::]:80 http2;
31
+ listen 80;
32
+ listen [::]:80;
33
+
34
+ http2 on;
33
35
34
36
server_name ${INTERNETNL_DOMAINNAME} ~(nl|en|www|ipv6)\.${INTERNETNL_DOMAINNAME} ${REDIRECT_DOMAINS_LIST};
35
37
@@ -49,8 +51,10 @@ server {
49
51
50
52
# http server for connection test, does not redirect to https
51
53
server {
52
- listen 80 http2;
53
- listen [::]:80 http2;
54
+ listen 80;
55
+ listen [::]:80;
56
+
57
+ http2 on;
54
58
55
59
server_name ~(conn|(?<subdomain>en\.|nl\.|www\.)conn).${INTERNETNL_DOMAINNAME};
56
60
@@ -87,8 +91,10 @@ server {
87
91
}
88
92
# http server for connection test XHR requests
89
93
server {
90
- listen 80 http2;
91
- listen [::]:80 http2;
94
+ listen 80;
95
+ listen [::]:80;
96
+
97
+ http2 on;
92
98
93
99
server_name
94
100
*.test-ns-signed.${INTERNETNL_DOMAINNAME}
@@ -114,8 +120,10 @@ server {
114
120
115
121
# No-www.org Class B compliance, see https://www.no-www.org/faq.php
116
122
server {
117
- listen 443 ssl http2;
118
- listen [::]:443 ssl http2;
123
+ listen 443 ssl;
124
+ listen [::]:443 ssl;
125
+
126
+ http2 on;
119
127
120
128
server_name www.${INTERNETNL_DOMAINNAME} ~(nl|en|conn)\.www.${INTERNETNL_DOMAINNAME} ${REDIRECT_DOMAINS_LIST};
121
129
@@ -149,8 +157,10 @@ server {
149
157
150
158
# default https server
151
159
server {
152
- listen 443 ssl http2;
153
- listen [::]:443 ssl http2;
160
+ listen 443 ssl;
161
+ listen [::]:443 ssl;
162
+
163
+ http2 on;
154
164
155
165
server_name ${INTERNETNL_DOMAINNAME} ~(?<subdomain>nl\.|en\.|www\.|ipv6\.)${INTERNETNL_DOMAINNAME};
156
166
@@ -275,8 +285,10 @@ server {
275
285
# Temporary (1 year) exception for conn. subdomain to disable HSTS and redirect back to HTTP for
276
286
# clients that accessed the HTTPS version in the past and got a HSTS set of 1 year.
277
287
server {
278
- listen 443 ssl http2;
279
- listen [::]:443 ssl http2;
288
+ listen 443 ssl;
289
+ listen [::]:443 ssl;
290
+
291
+ http2 on;
280
292
281
293
server_name conn.${INTERNETNL_DOMAINNAME};
282
294
@@ -309,6 +321,8 @@ server {
309
321
listen 443 ssl default_server;
310
322
listen [::]:443 ssl default_server;
311
323
324
+ http2 on;
325
+
312
326
ssl_reject_handshake on;
313
327
314
328
location / {
@@ -321,6 +335,8 @@ server {
321
335
listen 80 default_server;
322
336
listen [::]:80 default_server;
323
337
338
+ http2 on;
339
+
324
340
server_name _;
325
341
326
342
location / {
0 commit comments