mirror of
https://git.anonymousland.org/anonymousland/infrastructure.git
synced 2025-01-19 12:41:29 -05:00
82 lines
2.7 KiB
Plaintext
82 lines
2.7 KiB
Plaintext
|
## Version 2022/09/08
|
||
|
# make sure that your dns has a cname set for vaultwarden and that your vaultwarden container is not using a base url
|
||
|
# make sure your vaultwarden container is named "vaultwarden"
|
||
|
# set the environment variable WEBSOCKET_ENABLED=true on your vaultwarden container
|
||
|
|
||
|
server {
|
||
|
listen 443 ssl;
|
||
|
listen [::]:443 ssl;
|
||
|
|
||
|
server_name vaultwarden.*;
|
||
|
|
||
|
include /config/nginx/ssl.conf;
|
||
|
|
||
|
client_max_body_size 128M;
|
||
|
|
||
|
# enable for ldap auth (requires ldap-location.conf in the location block)
|
||
|
#include /config/nginx/ldap-server.conf;
|
||
|
|
||
|
# enable for Authelia (requires authelia-location.conf in the location block)
|
||
|
#include /config/nginx/authelia-server.conf;
|
||
|
|
||
|
location / {
|
||
|
# enable the next two lines for http auth
|
||
|
#auth_basic "Restricted";
|
||
|
#auth_basic_user_file /config/nginx/.htpasswd;
|
||
|
|
||
|
# enable for ldap auth (requires ldap-server.conf in the server block)
|
||
|
#include /config/nginx/ldap-location.conf;
|
||
|
|
||
|
# enable for Authelia (requires authelia-server.conf in the server block)
|
||
|
#include /config/nginx/authelia-location.conf;
|
||
|
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ (/vaultwarden)?/admin {
|
||
|
# enable the next two lines for http auth
|
||
|
#auth_basic "Restricted";
|
||
|
#auth_basic_user_file /config/nginx/.htpasswd;
|
||
|
|
||
|
# enable for ldap auth (requires ldap-server.conf in the server block)
|
||
|
#include /config/nginx/ldap-location.conf;
|
||
|
|
||
|
# enable for Authelia (requires authelia-server.conf in the server block)
|
||
|
#include /config/nginx/authelia-location.conf;
|
||
|
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ (/vaultwarden)?/notifications/hub {
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 3012;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ (/vaultwarden)?/notifications/hub/negotiate {
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
}
|