|
a83b380490
|
bundles/nginx: more config options
|
2024-10-26 08:19:43 +02:00 |
|
|
b3ab18a32c
|
bundles/nginx: don't cache stuff when running through php
|
2024-07-01 17:17:30 +02:00 |
|
|
35331f5f4c
|
update ssl configuration of some bundles
|
2024-05-05 15:49:45 +02:00 |
|
|
09e59af95f
|
bundles/nginx: listen ... http2; is deprecated
|
2024-04-24 23:04:06 +02:00 |
|
|
8d8f457468
|
bundles/nginx: add mjs to mime types
|
2024-03-03 12:44:41 +01:00 |
|
|
698f203936
|
bundles/nginx: add option to not redirect domain aliases
|
2024-02-13 14:01:40 +01:00 |
|
|
050931edf2
|
bundles/nginx: redirect domain_aliases to primary domain
|
2024-02-13 13:57:53 +01:00 |
|
|
ea77c68e16
|
bundles/nginx: hide content security headers coming from php
|
2023-09-02 20:49:05 +02:00 |
|
|
b01dcb0ff9
|
bundles/nginx: enable creating logs for debugging purposes
|
2023-09-01 05:53:37 +02:00 |
|
|
757e9e6bb8
|
bundles/nginx: add option to disable anon_timing log
|
2023-08-26 17:21:23 +02:00 |
|
Sophie Schiller
|
a8cf858d44
|
bundles/ntfy: first draft
|
2022-10-19 15:24:39 +02:00 |
|
|
aa5c7ff8b4
|
block access to the go /debug/pprof/ endpoint
|
2022-08-19 07:26:01 +02:00 |
|
|
56bafd73be
|
bundles/nginx: refine fastcgi config
kunsi/bundlewrap/pipeline/head There was a failure building this commit
|
2022-03-05 18:55:51 +01:00 |
|
Sophie Schiller
|
481c1c85e5
|
bundle/nginx set instead of HTTPS
|
2021-09-14 20:23:01 +02:00 |
|
|
65462ca536
|
bundles/nginx: default redirect mode should be 308
|
2021-08-22 07:20:45 +02:00 |
|
Sophie Schiller
|
e8d1582ed4
|
bw/nginx i hate whitespace
kunsi/bundlewrap/pipeline/head This commit looks good
kunsi/bundlewrap/pipeline/pr-main This commit looks good
|
2021-08-07 22:01:40 +02:00 |
|
Sophie Schiller
|
6e3603553f
|
bw/nginx retab everything
kunsi/bundlewrap/pipeline/head There was a failure building this commit
kunsi/bundlewrap/pipeline/pr-main There was a failure building this commit
|
2021-08-07 21:59:07 +02:00 |
|
Sophie Schiller
|
ab21983a4f
|
bw/nginx add not found page and deployment of error pages
kunsi/bundlewrap/pipeline/pr-main There was a failure building this commit
kunsi/bundlewrap/pipeline/head There was a failure building this commit
|
2021-08-07 21:52:39 +02:00 |
|
|
d9d98116e6
|
bundles/grafana: increase proxy_read_timeout for /api/ds/query
kunsi/bundlewrap/pipeline/head This commit looks good
|
2021-08-07 20:02:57 +02:00 |
|
|
cbc0a1a927
|
nodes/htz.ex42-1048908: fix X-Forwarded-For header for matrix-media-repo
bundlewrap/pipeline/head This commit looks good
|
2021-07-04 20:03:22 +02:00 |
|
|
b5ab21549d
|
bundles/nginx: rename 'proxy' metadata to 'locations', support more generic options, move extras files to metadata
bundlewrap/pipeline/head This commit looks good
|
2021-07-04 19:28:03 +02:00 |
|
|
e091adaa64
|
bundles/nginx: increase buffer sizes
bundlewrap/pipeline/head This commit looks good
|
2021-07-02 18:21:57 +02:00 |
|
|
68e79b4883
|
bundles/nginx: only add well-known alias for vhosts which use letsencrypt
|
2021-07-01 16:04:46 +02:00 |
|
|
db83b1614b
|
bundles/nginx: add anonymous timing logging for http requests
bundlewrap/pipeline/head This commit looks good
|
2021-06-05 15:53:02 +02:00 |
|
|
1fbc08f74b
|
bundles/nginx: add a default security.txt to all vhosts
bundlewrap/pipeline/head This commit looks good
|
2021-06-03 18:57:25 +02:00 |
|
|
cf3c45fdd5
|
bundles/nginx: prepare for arch linux
|
2021-06-01 16:52:03 +02:00 |
|
|
3468b719ed
|
bundles/nginx: default vhost always supports letsencrypt
|
2021-05-24 19:19:10 +02:00 |
|
|
44d42de81c
|
bundles/nginx: only redirect to ssl for sites which actually have ssl enabled
bundlewrap/pipeline/head This commit looks good
|
2021-04-25 09:20:16 +02:00 |
|
|
d98a1adfd9
|
bundles/ssl: support using a preexisting ssl certificate
|
2021-04-25 09:09:23 +02:00 |
|
|
6a88040826
|
bundles/nginx: disable Federated Learning of Cohorts for all hosts
bundlewrap/pipeline/head This commit looks good
|
2021-04-16 18:36:50 +02:00 |
|
|
b52a196c73
|
bundles/nginx: add configuration option for client_max_body_size
bundlewrap/pipeline/head This commit looks good
|
2021-03-30 21:26:25 +02:00 |
|
|
b470fddc12
|
bundles/nginx: add gdpr-compatible log format
|
2021-02-20 21:11:12 +01:00 |
|
|
74d81eb7ba
|
bundles/nginx: support disabling ssl for each vhost individually
bundlewrap/pipeline/head This commit looks good
|
2021-02-20 14:25:27 +01:00 |
|
|
fbb8840dff
|
add .editorconfig, format files correctly
bundlewrap/pipeline/head This commit looks good
|
2021-02-17 10:56:18 +01:00 |
|
|
2aaf7cf8f8
|
bundles/nginx: better ssl
|
2021-01-24 18:44:13 +01:00 |
|
|
11701a67c8
|
dns: deploy MTA-STS
bundlewrap/pipeline/head This commit looks good
|
2020-11-11 11:41:06 +01:00 |
|
|
8cb997133a
|
bundles/nginx: add monitoring
bundlewrap/pipeline/head This commit looks good
|
2020-11-10 10:57:04 +01:00 |
|
|
f8bc4b2ad9
|
bundles/php: introduce
|
2020-10-31 13:00:38 +01:00 |
|
|
e2d8923dee
|
bundles/nginx: use metadata reactor to determine index files
|
2020-10-31 10:41:48 +01:00 |
|
|
8eeaabf615
|
bundles/nginx: use http 308 for https redirect
bundlewrap/pipeline/head This commit looks good
basically "go away. nothing's here. use https forever."
|
2020-10-30 15:24:24 +01:00 |
|
|
7ea85247e0
|
bundles/nginx: proxy is a dict now, add some more configuration options
bundlewrap/pipeline/head This commit looks good
|
2020-09-22 18:39:38 +02:00 |
|
|
151d8e92c3
|
bundles/nginx: do not set X-Forwarded-Proto if https is disabled, do not use http2 without ssl
|
2020-09-20 15:46:39 +02:00 |
|
|
d6799088c4
|
bundles/nginx: add metadata option to disable https
|
2020-09-20 14:36:43 +02:00 |
|
|
8547948ce6
|
bundles/nginx: also set host header for proxy connections
|
2020-08-19 21:43:37 +02:00 |
|
|
d7862918a6
|
bundles/nginx: set default X-Frame-Options to SAMEORIGIN
bundlewrap/pipeline/head This commit looks good
|
2020-08-18 15:07:43 +02:00 |
|
|
17828a29f8
|
bundles/nginx: fix hsts header
bundlewrap/pipeline/head This commit looks good
|
2020-08-14 08:23:41 +02:00 |
|
|
7986f6ee7d
|
bundles/letsencrypt: remove ocsp stapling
bundlewrap/pipeline/head This commit looks good
This causes problems with weechat and dovecot. Those certificates
are short-lived, so not having OCSP stapling is probably fine.
|
2020-07-26 18:48:37 +02:00 |
|
|
f7eb0cc150
|
bundles/{letsencrypt,nginx}: fix ocsp stapling
bundlewrap/pipeline/head There was a failure building this commit
|
2020-07-19 12:10:19 +02:00 |
|
|
de632a7725
|
htz.ex42-1048908: add missing domains
bundlewrap/pipeline/head There was a failure building this commit
|
2020-07-19 11:26:12 +02:00 |
|
|
94c2c644a6
|
bundles/nginx: support PHP 7.3
|
2020-07-19 11:09:53 +02:00 |
|