Skip to content
Snippets Groups Projects
Commit fdbf8098 authored by Christian Elberfeld's avatar Christian Elberfeld
Browse files

matrix federation fix

parent 1f82d0af
No related branches found
No related tags found
No related merge requests found
ssl_session_cache shared:SSL:5m;
ssl_session_timeout 5m;
add_header Strict-Transport-Security "max-age=31536000; includeSubdomains;";
ssl_protocols TLSv1.2;
ssl_ciphers ECDHE-RSA-AES256-GCM-SHA512:DHE-RSA-AES256-GCM-SHA512:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-SHA384;
ssl_prefer_server_ciphers on;
\ No newline at end of file
server { server {
listen 8448 ssl default_server; listen 8448 ssl http2;
listen [::]:8448 ssl default_server; listen [::]:8448 ssl http2;
ssl_certificate /etc/letsencrypt/live/matrix.warpzone.ms/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/matrix.warpzone.ms/privkey.pem;
ssl_dhparam /etc/nginx/dhparams.pem;
{% include "includes/_ssl_common_settings" %}
server_name matrix.warpzone.ms; server_name matrix.warpzone.ms;
location / { location / {
proxy_pass http://127.0.0.1:18008; proxy_pass http://127.0.0.1:18448;
proxy_set_header X-Forwarded-For $remote_addr; proxy_set_header X-Forwarded-For $remote_addr;
} }
} }
...@@ -33,13 +33,7 @@ server { ...@@ -33,13 +33,7 @@ server {
ssl_certificate_key /etc/letsencrypt/live/{{ item }}/privkey.pem; ssl_certificate_key /etc/letsencrypt/live/{{ item }}/privkey.pem;
ssl_dhparam /etc/nginx/dhparams.pem; ssl_dhparam /etc/nginx/dhparams.pem;
ssl_session_cache shared:SSL:5m; {% include "includes/_ssl_common_settings" %}
ssl_session_timeout 5m;
add_header Strict-Transport-Security "max-age=31536000; includeSubdomains;";
ssl_protocols TLSv1.2;
ssl_ciphers ECDHE-RSA-AES256-GCM-SHA512:DHE-RSA-AES256-GCM-SHA512:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-SHA384;
ssl_prefer_server_ciphers on;
server_name {{ item }}; server_name {{ item }};
root /dev/null; root /dev/null;
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment