jc21
b9ef11e8bf
Merge pull request #1614 from the1ts/feature/proxy-header-additions
...
Feature: Add two new headers to proxy.conf
2022-01-02 16:11:50 +10:00
Jocelyn Le Sage
849bdcda7b
Fixed generation of resolvers.conf.
...
This fixes scenarios where `resolv.conf` generated by dhcpcd has a nameserver with `%interface` appended to its IPv6 address.
For example, a line like this must be properly handled:
nameserver fe80::7747:4aff:fe9a:8cb1%br0
2021-12-26 21:49:55 -05:00
Jocelyn Le Sage
5aae8cd0e3
Fixed the access log path to match the HTTP one. This also fixes its handling by logrotate.
2021-12-26 20:56:42 -05:00
Paul Mansfield
3dfe23836c
Add two new headers to proxy.conf
...
Fixes #1609 . Adding both X-Forwarded-Host and X-Forwarded-Port, this is vital for some services behind a proxy (used to allow creation of absolute links in html). I've had to include at least the Host version in the past for jenkins and nexus.
Been running locally for 24 hours, does not appear to break any of my 15+ services currently running behind NPM would allow people to host those services without the need for advanced configuration
2021-11-29 13:48:39 +00:00
chaptergy
1f879f67a9
Reverts back to proxy_pass without variables
2021-11-09 13:57:39 +01:00
Julian Reinhardt
3d80759a21
Renames the $upstream variables and does not append $request_ui if capture group exists in location
2021-11-04 10:08:15 +01:00
Julian Reinhardt
4ada0feae3
Removes swagger container and adds exposed port for DB in dev env
2021-11-02 11:33:22 +01:00
Julian Reinhardt
ca59e585d8
Uses variable in proxy_pass for normal proxy hosts
2021-10-25 14:58:02 +02:00
chaptergy
f63441921f
Sets the cert chain to prefer ISRG Root X1
2021-10-12 16:11:47 +02:00
Jamie Curnow
5e9ff4d2bf
Add healthcheck back for ci containers
2021-08-23 09:29:11 +10:00
jc21
daa71764b6
Merge pull request #1338 from bmbvenom/patch-1
...
remove dummy cert references to Nginx Proxy Manager
2021-08-23 08:52:01 +10:00
Jamie Curnow
6a6c2ef192
Remove healthchecks and mention how to optin to them in docs
2021-08-23 08:50:07 +10:00
bmbvenom
320315956d
remove dummy cert references to Nginx Proxy Manager
...
Based on this issue: https://github.com/jc21/nginx-proxy-manager/issues/1024
2021-08-21 22:37:14 -07:00
Jamie Curnow
62eb3fcd85
Updated docker base image location
2021-08-17 11:28:30 +10:00
jc21
ab40e4e2cf
Merge pull request #1036 from BjoernAkAManf/master
...
Allows hostname instead of ip for streams
2021-08-16 13:40:40 +10:00
David Dosoudil
b1ceda3af4
Update letsencrypt.ini to support ECDSA keys
...
Since we have newer certbot available, it's time to support more modern and safer ECDSA keys instead of RSA.
2021-08-07 20:05:53 +10:00
chaptergy
d34691152c
Fixes renewal unused http certificates
2021-08-04 14:07:53 +02:00
chaptergy
cea80b482e
Fixes certificate renewal for dns challenges
2021-08-04 13:47:44 +02:00
Jamie Curnow
f2acb9e150
Tweaks to s6 scripts
2021-07-25 21:09:02 +10:00
chaptergy
fbae107c04
Changes owner of logs to root on every container start
2021-07-23 09:11:43 +02:00
jc21
9458cfbd1a
Merge pull request #1229 from demize/auth_request-fix
...
Disable auth_request in letsencrypt-acme-challenge.conf
2021-07-18 21:54:59 +10:00
jc21
e91019feb9
Merge pull request #1140 from jc21/adds-logrotation
...
Adds logrotation
2021-07-12 07:54:02 +10:00
demize
4b2c0115db
Add to letsencrypt-acme-challenge.conf to allow for ACME challenges on proxy hosts using auth_requests
2021-07-10 15:02:09 -04:00
chaptergy
b7b150a979
Run logrotation binary from program
2021-06-29 21:18:29 +02:00
chaptergy
bd3a13b2a5
Also rotate other logs
2021-06-18 10:43:56 +02:00
chaptergy
289d179142
Adds logrotate
2021-06-18 09:38:48 +02:00
chaptergy
deca493912
Splits access and error logs for each host
2021-06-18 09:38:48 +02:00
chaptergy
d16bf7d6c0
Adds explicit names to dev containers
2021-06-18 09:38:48 +02:00
Daniel Sörlöv
3e744b6b2d
Update ssl-ciphers.conf
...
Removing support (by default) for all the unsecure protocols. This should be the default and if needed additional support can be configured. As this is a security feature it should be aligned with a moderate policy. This is updated using the latest recomendation as found on https://ssl-config.mozilla.org/#server=nginx&version=1.17.7&config=intermediate&openssl=1.1.1d&guideline=5.6
2021-06-17 15:17:13 +02:00
chaptergy
df5836e573
Sets real_ip ranges to local network only
2021-06-07 08:30:39 +02:00
Jamie Curnow
717105f243
Revert installing certbot. This is handled by base image jc21/nginx-full now
...
Update path of certbot, and use the pip instead
2021-05-07 13:49:31 +10:00
Jamie Curnow
a02d4ec46f
Use certbot from pip instead of apt
2021-05-06 19:10:40 +10:00
Jamie Curnow
655477316b
Version bump, contributors added, apt tweak
2021-05-06 11:32:54 +10:00
Jamie Curnow
f2f653e345
Remove platform specific determination
2021-04-29 11:19:59 +10:00
Jamie Curnow
9872daf29f
Switch to nginx-full base
2021-04-29 08:28:40 +10:00
Björn Heinrichs
389fd158ad
allows hostname instead of ip for streams
2021-04-24 01:09:01 +02:00
jc21
5ff07faa7e
Merge pull request #872 from ahgraber/master
...
Add Docker secrets
2021-02-08 11:59:23 +10:00
ahgraber
11175aaa5f
revert docker/dev before PR
2021-02-07 09:52:37 -05:00
ahgraber
7fcc4a7ef0
cleanup
2021-02-06 20:05:40 -05:00
ahgraber
5abb9458c7
fix linebreaks in secrets
2021-02-05 23:47:30 -05:00
Alex Graber
ef3a073af5
local builds & secrets
2021-02-05 16:52:24 -05:00
ahgraber
15c4857a4b
fix /docker/dev/docker-compose.yaml
2021-02-04 14:03:17 -05:00
Alex Graber
63a71afbc8
beta s6 secrets
2021-02-04 11:25:26 -05:00
Alex Graber
64761ee9c6
beta secrets
2021-02-04 11:15:31 -05:00
ahgraber
d6c344b5ec
add local docker-compose to build
2021-02-02 08:58:45 -05:00
MooBaloo
4ac52a0e25
Add custom .conf above includes for NPM-generated files.
...
Added a new clause for custom http_top.conf above the include clauses for NPM-generated files. Allows for more flexibility with adding custom nginx .conf files to NPM
Use case: adding a configuration change needs to be present before other custom configuration files are called and reference configuration from the custom http_top.conf file.
Example: add a new log_format in http_top.conf, then referencing it in a access_log clause in server_proxy.conf.
2021-01-28 05:52:41 -05:00
jc21
1faac4edf2
Merge pull request #750 from klutchell/klutchell-patch-1
...
allow custom stream conf
2021-01-03 20:14:55 +10:00
Kyle Harding
528e5ef3bc
allow custom stream conf
...
Allow a top-level custom `stream` configuration file to be loaded.
2020-12-01 14:22:31 -05:00
Jamie Curnow
6fed642aba
Cypress docker build should be faster and added mkcert for later
2020-11-22 16:57:12 +10:00
chaptergy
c5ceb3b2b1
Removes obsolete file mount
2020-11-07 13:54:18 +01:00
chaptergy
57fc1d8f08
Removes the need of a config file and allows db config via environment
2020-11-07 13:24:01 +01:00
Jamie Curnow
13eaa346bc
Use remote addr as real ip
2020-11-06 13:21:22 +10:00
Jamie Curnow
d7437cc4a7
Test for real-ip header
2020-11-06 13:17:30 +10:00
Jamie Curnow
f192748bf9
Use x-real-ip header for the real-ip module
2020-10-19 11:40:50 +10:00
chaptergy
867fe1322b
Unifies directory structure in dev and prod containers
2020-10-08 13:38:20 +02:00
chaptergy
95208a50a7
Increases timeouts in front- and backend
2020-10-08 13:21:17 +02:00
chaptergy
514b13fcc2
Fixes build issues due to globally used file
2020-10-06 16:12:12 +02:00
chaptergy
64de36cdf2
Adds more DNS plugins
2020-10-06 15:16:45 +02:00
chaptergy
2523424f68
Updates dockerfiles
2020-10-05 01:04:18 +02:00
jc21
87f61b8527
Merge pull request #572 from jipjan/features/dns-cloudflare
...
Add DNS CloudFlare with wildcard support
2020-09-03 14:01:05 +10:00
Jaap-Jan de Wit
1b611e67c8
Merge commit 'c5aa2b9f771cbd4c78c239ed0791aeb8d9e4d2e4' into features/dns-cloudflare
2020-08-23 18:30:07 +00:00
Jaap-Jan de Wit
2d7576c57e
add cloudflare dns also to dev docker file
2020-08-23 10:54:36 +00:00
Jaap-Jan
251aac716a
Add CloudFlare DNS plugin to certbot
2020-08-21 09:49:43 +02:00
Jamie Curnow
5d65166777
Ignore local subnets for real IP determination
2020-08-12 09:32:40 +10:00
Jamie Curnow
5be46b4b20
Cypress fixes
2020-08-06 11:26:37 +10:00
Jamie Curnow
7fd825b76b
Use development config file in CI
2020-08-06 10:59:25 +10:00
Jamie Curnow
492d450d26
Sqlite Tweaks
...
- Added cypress testing in CI for sqlite
- Cleaned up promises in setup
- Ensure check for settings is strict
2020-08-06 08:58:20 +10:00
Jamie Curnow
98068c0f57
Debug CI by leaving images alive
2020-05-28 13:26:36 +10:00
Jamie Curnow
66412a75f9
Revert to node base now that base has openresty
2020-05-28 09:25:29 +10:00
Jamie Curnow
c631537dbe
Don't wipe out nginx dir, keeps luajit
2020-05-27 10:38:00 +10:00
Jamie Curnow
8d2f49541c
Use OpenResty base image
2020-05-26 14:38:41 +10:00
ƬHE ЯAW ☣
affabf065e
set proper timeout.
2020-05-11 00:24:02 +02:00
Jamie Curnow
bdb591af9e
- Add ability to disable ipv6, fixes #312
...
- Added ipv6 listening to hosts when configured, fixes #236 and #149
- Added documentation about disabling ipv6
- Updated npm packages
2020-04-07 10:43:19 +10:00
jc21
93f29734b7
Version 2.1.2 ( #317 )
...
* Tweaks and backend vscode settings
* Version bump
2020-03-06 11:04:42 +10:00
Jamie Curnow
b7e1e4fd9e
Use the corresponding s6 binary for the built arch - fixes #298
2020-02-21 10:52:43 +10:00
jc21
bb0f4bfa62
v2.1.0 ( #293 )
...
* Fix wrapping when too many hosts are shown (#207 )
* Update npm packages, fixes CVE-2019-10757
* Revert some breaking packages
* Major overhaul
- Docker buildx support in CI
- Cypress API Testing in CI
- Restructured folder layout (insert clean face meme)
- Added Swagger documentation and validate API against that (to be completed)
- Use common base image for all supported archs, which includes updated nginx with ipv6 support
- Updated certbot and changes required for it
- Large amount of Hosts names will wrap in UI
- Updated packages for frontend
- Version bump 2.1.0
* Updated documentation
* Fix JWT expire time going crazy. Now set to 1day
* Backend JS formatting rules
* Remove v1 importer, I doubt anyone is using v1 anymore
* Added backend formatting rules and enforce them
in Jenkins builds
* Fix CI, doesn't need a tty
* Thanks bcrypt. Why can't you just be normal.
* Cleanup after syntax check
Co-authored-by: Marcelo Castagna <margaale@users.noreply.github.com>
2020-02-19 15:55:06 +11:00