consistent http3 directive and related headers
authorShane Jaroch <chown_tee@proton.me>
Wed, 21 Jan 2026 04:08:24 +0000 (23:08 -0500)
committerShane Jaroch <chown_tee@proton.me>
Wed, 21 Jan 2026 04:18:37 +0000 (23:18 -0500)
etc/nginx/conf.d/default.prod.conf
etc/nginx/conf.d/git-http.dev.conf
etc/nginx/conf.d/stalwart.dev.conf

index 984420c24c11c847fa65a8ff1b825f826eb58729..39122c398be8821641feaae0ea160901a840b024 100644 (file)
@@ -174,7 +174,3 @@ server {
 
   return 301 https://nutra.tk$request_uri;
 }
-
-# (Matrix Chat removed: Dev only)
-
-# (Matrix Chat on 8448 removed: Dev only)
index b8162ef8edd9cd9329198b1d7e1e2a7060e36cee..49792ed112e42e2aabef0b30192c5ebfe9868424 100644 (file)
@@ -14,6 +14,7 @@ server {
     ssl_certificate_key /etc/letsencrypt/live/nutra.tk/privkey.pem; # managed by Certbot
     include /etc/letsencrypt/options-ssl-nginx.conf;
     ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem;
+    ssl_trusted_certificate /etc/ssl/private/ca-certs.pem;
 
     # Headers
     add_header Alt-Svc 'h3=":443"; ma=86400' always;
index 1f9883a8063a005f152029baf3086e6f73db118d..ebf2e29cb4ffe9583ba6ba08f5738551f7f684e2 100644 (file)
@@ -38,6 +38,7 @@ server {
     ssl_certificate_key /etc/letsencrypt/live/mail.nutra.tk/privkey.pem;
     include /etc/letsencrypt/options-ssl-nginx.conf;
     ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem;
+    ssl_trusted_certificate /etc/ssl/private/ca-certs.pem;
 
     location / {
         proxy_pass http://127.0.0.1:8080;