Skip to content

Commit 33e1c00

Browse files
committed
update frontend nginx.conf to allow certbot to renew SSL certificates using port 80
1 parent cbb3b12 commit 33e1c00

File tree

1 file changed

+25
-1
lines changed

1 file changed

+25
-1
lines changed

frontend/nginx.conf

Lines changed: 25 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,31 @@
1+
server {
2+
# allow certbot to renew SSL certificates using port 80
3+
listen 80;
4+
listen [::]:80;
5+
6+
server_name circuitseq.iwr.uni-heidelberg.de;
7+
server_tokens off;
8+
9+
location /.well-known/acme-challenge/ {
10+
root /var/www/certbot;
11+
}
12+
13+
# forward anything else to https://circuitseq.iwr.uni-heidelberg.de
14+
location / {
15+
return 301 https://circuitseq.iwr.uni-heidelberg.de$request_uri;
16+
}
17+
}
18+
19+
server {
20+
# redirect www.circuitseq.iwr.uni-heidelberg.de to circuitseq.iwr.uni-heidelberg.de
21+
server_name www.circuitseq.iwr.uni-heidelberg.de;
22+
return 301 $scheme://circuitseq.iwr.uni-heidelberg.de$request_uri;
23+
}
24+
125
server {
226
listen 443 ssl http2;
327
listen [::]:443 ssl http2;
4-
server_name www.circuitseq.iwr.uni-heidelberg.de circuitseq.iwr.uni-heidelberg.de localhost;
28+
server_name www.circuitseq.iwr.uni-heidelberg.de circuitseq.iwr.uni-heidelberg.de;
529
ssl_certificate /sample_flow_ssl_cert.pem;
630
ssl_certificate_key /sample_flow_ssl_key.pem;
731

0 commit comments

Comments
 (0)