Subv
5811345050
Use OpenResty instead of plain nginx to support OpenID Connect authorization.
2021-09-09 08:12:48 +10:00
Jamie Curnow
5e9ff4d2bf
Add healthcheck back for ci containers
2021-08-23 09:29:11 +10:00
jc21
daa71764b6
Merge pull request #1338 from bmbvenom/patch-1
...
remove dummy cert references to Nginx Proxy Manager
2021-08-23 08:52:01 +10:00
Jamie Curnow
6a6c2ef192
Remove healthchecks and mention how to optin to them in docs
2021-08-23 08:50:07 +10:00
bmbvenom
320315956d
remove dummy cert references to Nginx Proxy Manager
...
Based on this issue: https://github.com/jc21/nginx-proxy-manager/issues/1024
2021-08-21 22:37:14 -07:00
Jamie Curnow
62eb3fcd85
Updated docker base image location
2021-08-17 11:28:30 +10:00
jc21
ab40e4e2cf
Merge pull request #1036 from BjoernAkAManf/master
...
Allows hostname instead of ip for streams
2021-08-16 13:40:40 +10:00
David Dosoudil
b1ceda3af4
Update letsencrypt.ini to support ECDSA keys
...
Since we have newer certbot available, it's time to support more modern and safer ECDSA keys instead of RSA.
2021-08-07 20:05:53 +10:00
chaptergy
d34691152c
Fixes renewal unused http certificates
2021-08-04 14:07:53 +02:00
chaptergy
cea80b482e
Fixes certificate renewal for dns challenges
2021-08-04 13:47:44 +02:00
Jamie Curnow
f2acb9e150
Tweaks to s6 scripts
2021-07-25 21:09:02 +10:00
chaptergy
fbae107c04
Changes owner of logs to root on every container start
2021-07-23 09:11:43 +02:00
jc21
9458cfbd1a
Merge pull request #1229 from demize/auth_request-fix
...
Disable auth_request in letsencrypt-acme-challenge.conf
2021-07-18 21:54:59 +10:00
jc21
e91019feb9
Merge pull request #1140 from jc21/adds-logrotation
...
Adds logrotation
2021-07-12 07:54:02 +10:00
demize
4b2c0115db
Add to letsencrypt-acme-challenge.conf to allow for ACME challenges on proxy hosts using auth_requests
2021-07-10 15:02:09 -04:00
chaptergy
b7b150a979
Run logrotation binary from program
2021-06-29 21:18:29 +02:00
chaptergy
bd3a13b2a5
Also rotate other logs
2021-06-18 10:43:56 +02:00
chaptergy
289d179142
Adds logrotate
2021-06-18 09:38:48 +02:00
chaptergy
deca493912
Splits access and error logs for each host
2021-06-18 09:38:48 +02:00
chaptergy
d16bf7d6c0
Adds explicit names to dev containers
2021-06-18 09:38:48 +02:00
Daniel Sörlöv
3e744b6b2d
Update ssl-ciphers.conf
...
Removing support (by default) for all the unsecure protocols. This should be the default and if needed additional support can be configured. As this is a security feature it should be aligned with a moderate policy. This is updated using the latest recomendation as found on https://ssl-config.mozilla.org/#server=nginx&version=1.17.7&config=intermediate&openssl=1.1.1d&guideline=5.6
2021-06-17 15:17:13 +02:00
chaptergy
df5836e573
Sets real_ip ranges to local network only
2021-06-07 08:30:39 +02:00
Jamie Curnow
717105f243
Revert installing certbot. This is handled by base image jc21/nginx-full now
...
Update path of certbot, and use the pip instead
2021-05-07 13:49:31 +10:00
Jamie Curnow
a02d4ec46f
Use certbot from pip instead of apt
2021-05-06 19:10:40 +10:00
Jamie Curnow
655477316b
Version bump, contributors added, apt tweak
2021-05-06 11:32:54 +10:00
Jamie Curnow
f2f653e345
Remove platform specific determination
2021-04-29 11:19:59 +10:00
Jamie Curnow
9872daf29f
Switch to nginx-full base
2021-04-29 08:28:40 +10:00
Björn Heinrichs
389fd158ad
allows hostname instead of ip for streams
2021-04-24 01:09:01 +02:00
jc21
5ff07faa7e
Merge pull request #872 from ahgraber/master
...
Add Docker secrets
2021-02-08 11:59:23 +10:00
ahgraber
11175aaa5f
revert docker/dev before PR
2021-02-07 09:52:37 -05:00
ahgraber
7fcc4a7ef0
cleanup
2021-02-06 20:05:40 -05:00
ahgraber
5abb9458c7
fix linebreaks in secrets
2021-02-05 23:47:30 -05:00
Alex Graber
ef3a073af5
local builds & secrets
2021-02-05 16:52:24 -05:00
ahgraber
15c4857a4b
fix /docker/dev/docker-compose.yaml
2021-02-04 14:03:17 -05:00
Alex Graber
63a71afbc8
beta s6 secrets
2021-02-04 11:25:26 -05:00
Alex Graber
64761ee9c6
beta secrets
2021-02-04 11:15:31 -05:00
ahgraber
d6c344b5ec
add local docker-compose to build
2021-02-02 08:58:45 -05:00
MooBaloo
4ac52a0e25
Add custom .conf above includes for NPM-generated files.
...
Added a new clause for custom http_top.conf above the include clauses for NPM-generated files. Allows for more flexibility with adding custom nginx .conf files to NPM
Use case: adding a configuration change needs to be present before other custom configuration files are called and reference configuration from the custom http_top.conf file.
Example: add a new log_format in http_top.conf, then referencing it in a access_log clause in server_proxy.conf.
2021-01-28 05:52:41 -05:00
jc21
1faac4edf2
Merge pull request #750 from klutchell/klutchell-patch-1
...
allow custom stream conf
2021-01-03 20:14:55 +10:00
Kyle Harding
528e5ef3bc
allow custom stream conf
...
Allow a top-level custom `stream` configuration file to be loaded.
2020-12-01 14:22:31 -05:00
Jamie Curnow
6fed642aba
Cypress docker build should be faster and added mkcert for later
2020-11-22 16:57:12 +10:00
chaptergy
c5ceb3b2b1
Removes obsolete file mount
2020-11-07 13:54:18 +01:00
chaptergy
57fc1d8f08
Removes the need of a config file and allows db config via environment
2020-11-07 13:24:01 +01:00
Jamie Curnow
13eaa346bc
Use remote addr as real ip
2020-11-06 13:21:22 +10:00
Jamie Curnow
d7437cc4a7
Test for real-ip header
2020-11-06 13:17:30 +10:00
Jamie Curnow
f192748bf9
Use x-real-ip header for the real-ip module
2020-10-19 11:40:50 +10:00
chaptergy
867fe1322b
Unifies directory structure in dev and prod containers
2020-10-08 13:38:20 +02:00
chaptergy
95208a50a7
Increases timeouts in front- and backend
2020-10-08 13:21:17 +02:00
chaptergy
514b13fcc2
Fixes build issues due to globally used file
2020-10-06 16:12:12 +02:00
chaptergy
64de36cdf2
Adds more DNS plugins
2020-10-06 15:16:45 +02:00