|
44d42de81c
|
bundles/nginx: only redirect to ssl for sites which actually have ssl enabled
bundlewrap/pipeline/head This commit looks good
|
2021-04-25 09:20:16 +02:00 |
|
|
d98a1adfd9
|
bundles/ssl: support using a preexisting ssl certificate
|
2021-04-25 09:09:23 +02:00 |
|
|
6a88040826
|
bundles/nginx: disable Federated Learning of Cohorts for all hosts
bundlewrap/pipeline/head This commit looks good
|
2021-04-16 18:36:50 +02:00 |
|
|
b52a196c73
|
bundles/nginx: add configuration option for client_max_body_size
bundlewrap/pipeline/head This commit looks good
|
2021-03-30 21:26:25 +02:00 |
|
|
b470fddc12
|
bundles/nginx: add gdpr-compatible log format
|
2021-02-20 21:11:12 +01:00 |
|
|
74d81eb7ba
|
bundles/nginx: support disabling ssl for each vhost individually
bundlewrap/pipeline/head This commit looks good
|
2021-02-20 14:25:27 +01:00 |
|
|
fbb8840dff
|
add .editorconfig, format files correctly
bundlewrap/pipeline/head This commit looks good
|
2021-02-17 10:56:18 +01:00 |
|
|
2aaf7cf8f8
|
bundles/nginx: better ssl
|
2021-01-24 18:44:13 +01:00 |
|
|
11701a67c8
|
dns: deploy MTA-STS
bundlewrap/pipeline/head This commit looks good
|
2020-11-11 11:41:06 +01:00 |
|
|
8cb997133a
|
bundles/nginx: add monitoring
bundlewrap/pipeline/head This commit looks good
|
2020-11-10 10:57:04 +01:00 |
|
|
f8bc4b2ad9
|
bundles/php: introduce
|
2020-10-31 13:00:38 +01:00 |
|
|
e2d8923dee
|
bundles/nginx: use metadata reactor to determine index files
|
2020-10-31 10:41:48 +01:00 |
|
|
8eeaabf615
|
bundles/nginx: use http 308 for https redirect
bundlewrap/pipeline/head This commit looks good
basically "go away. nothing's here. use https forever."
|
2020-10-30 15:24:24 +01:00 |
|
|
7ea85247e0
|
bundles/nginx: proxy is a dict now, add some more configuration options
bundlewrap/pipeline/head This commit looks good
|
2020-09-22 18:39:38 +02:00 |
|
|
151d8e92c3
|
bundles/nginx: do not set X-Forwarded-Proto if https is disabled, do not use http2 without ssl
|
2020-09-20 15:46:39 +02:00 |
|
|
d6799088c4
|
bundles/nginx: add metadata option to disable https
|
2020-09-20 14:36:43 +02:00 |
|
|
8547948ce6
|
bundles/nginx: also set host header for proxy connections
|
2020-08-19 21:43:37 +02:00 |
|
|
d7862918a6
|
bundles/nginx: set default X-Frame-Options to SAMEORIGIN
bundlewrap/pipeline/head This commit looks good
|
2020-08-18 15:07:43 +02:00 |
|
|
17828a29f8
|
bundles/nginx: fix hsts header
bundlewrap/pipeline/head This commit looks good
|
2020-08-14 08:23:41 +02:00 |
|
|
7986f6ee7d
|
bundles/letsencrypt: remove ocsp stapling
bundlewrap/pipeline/head This commit looks good
This causes problems with weechat and dovecot. Those certificates
are short-lived, so not having OCSP stapling is probably fine.
|
2020-07-26 18:48:37 +02:00 |
|
|
f7eb0cc150
|
bundles/{letsencrypt,nginx}: fix ocsp stapling
bundlewrap/pipeline/head There was a failure building this commit
|
2020-07-19 12:10:19 +02:00 |
|
|
de632a7725
|
htz.ex42-1048908: add missing domains
bundlewrap/pipeline/head There was a failure building this commit
|
2020-07-19 11:26:12 +02:00 |
|
|
94c2c644a6
|
bundles/nginx: support PHP 7.3
|
2020-07-19 11:09:53 +02:00 |
|
|
d1236d6e25
|
bundles/nginx: add stub_status
bundlewrap/pipeline/head This commit looks good
|
2020-06-01 13:35:54 +02:00 |
|
|
85b3adf671
|
add proxy feature to nginx
|
2020-06-01 11:31:13 +02:00 |
|
|
3523edbcb4
|
bundles/nginx: ensure we're doing letsencrypt, since we're enforcing ssl
|
2020-06-01 11:17:52 +02:00 |
|
|
36c8b90c4b
|
bundles/nginx: switch to TLS 1.2 and 1.3 only
bundlewrap/pipeline/head There was a failure building this commit
|
2020-06-01 11:01:00 +02:00 |
|
|
c4330f866b
|
bundles/nginx: add deployment of vhost configs
|
2020-06-01 10:52:52 +02:00 |
|
|
dc9e8dc679
|
add letsencrypt bundle
|
2020-06-01 10:26:37 +02:00 |
|
|
ffb962b108
|
bundles/nginx: add nginx config
|
2020-04-13 09:52:26 +02:00 |
|