listen 443 ssl http2 default_server;
listen [::]:443 ssl ipv6only=on; # managed by Certbot
+ client_max_body_size 50m;
+
# React app (base URL)
location / {
alias /var/www/react_app;
index index.html;
- try_files $uri $uri/ /index.html =404;
}
- # Ghost
- client_max_body_size 50m;
- root /var/www/blog/system/nginx-root; # Used for acme.sh SSL verification (https://acme.sh)
-
+ # Blog / Sphinx
location ^~ /blog/ {
- proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
- proxy_set_header X-Forwarded-Proto $scheme;
- proxy_set_header X-Real-IP $remote_addr;
- proxy_set_header Host $http_host;
- proxy_pass http://127.0.0.1:2368;
- proxy_redirect off;
- }
-
- location ~ /.well-known {
- allow all;
- }
-
-
- # [NEW] Sphinx blog
- location /docs {
alias /var/www/docs/_build/html;
index index.html;
}
}
+ # Other
+ location ~ /.well-known {
+ allow all;
+ }
+
+
+ # HTTPS / SSL
ssl_certificate /etc/letsencrypt/live/deveast.linode.poczatek.dev/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/letsencrypt/live/deveast.linode.poczatek.dev/privkey.pem; # managed by Certbot
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
-
}