From 812d18103a35c0ddd7daf0eecb96d0dbbdb7729f Mon Sep 17 00:00:00 2001 From: cybafelo Date: Sat, 5 Oct 2019 12:03:30 +0200 Subject: [PATCH] nginx first --- nginx/sites-available/api.r3js.org.conf | 61 +++++++++++++++++++ nginx/sites-available/portal.r3js.org.conf | 40 ++++++++++++ nginx/sites-available/websocket.r3js.org.conf | 40 ++++++++++++ 3 files changed, 141 insertions(+) create mode 100644 nginx/sites-available/api.r3js.org.conf create mode 100644 nginx/sites-available/portal.r3js.org.conf create mode 100644 nginx/sites-available/websocket.r3js.org.conf diff --git a/nginx/sites-available/api.r3js.org.conf b/nginx/sites-available/api.r3js.org.conf new file mode 100644 index 0000000..9ba0689 --- /dev/null +++ b/nginx/sites-available/api.r3js.org.conf @@ -0,0 +1,61 @@ +upstream node-api { + server 127.0.0.1:3104; +} + +server { + listen 80; + listen [::]:80; + + server_name api.r3js.org; + + return 301 https://api.r3js.org$request_uri; +} + +server { + + listen 443 ssl; + listen [::]:443; + + server_name api.r3js.org; + + ssl_certificate /etc/letsencrypt/live/api.r3js.org/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/api.r3js.org/privkey.pem; + include /etc/letsencrypt/options-ssl-nginx.conf; + ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; + + root /usr/share/r3-server/live/api.r3js.org/webroot; + + access_log /var/log/api.r3js.org/access.log; + error_log /var/log/api.r3js.org/error.log; + + add_header Access-Control-Allow-Origin '*' always; + add_header Access-Control-Allow-Methods 'POST, GET, OPTIONS' always; + add_header Access-Control-Allow-Headers 'Cache-Control,Content-Type' always; + add_header Content-Type 'application/json' always; + add_header X-Content-Type-Options: 'nosniff' always; + + if ($request_method = OPTIONS) { + return 200; + } + + location ~ { + try_files $uri $uri/ @node; + } + + location @node { + + proxy_pass_request_headers on; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-NginX-Proxy true; + + add_header Access-Control-Allow-Origin '*' always; + add_header Access-Control-Allow-Methods 'POST, GET, OPTIONS' always; + add_header Access-Control-Allow-Headers 'Cache-Control,Content-Type' always; + add_header Content-Type 'application/json' always; + add_header X-Content-Type-Options: 'nosniff' always; + + proxy_pass http://node-api$request_uri; + + } +} diff --git a/nginx/sites-available/portal.r3js.org.conf b/nginx/sites-available/portal.r3js.org.conf new file mode 100644 index 0000000..64b2fe3 --- /dev/null +++ b/nginx/sites-available/portal.r3js.org.conf @@ -0,0 +1,40 @@ +server { + listen 80; + listen [::]:80; + + server_name editor.r3js.org; + + return 301 https://editor.r3js.org$request_uri; +} + +server { + + listen 443 ssl; + listen [::]:443; + + server_name editor.r3js.org; + + ssl_certificate /etc/letsencrypt/live/editor.r3js.org/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/editor.r3js.org/privkey.pem; + include /etc/letsencrypt/options-ssl-nginx.conf; + ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; + + root /usr/share/cybafelo/editor.r3js.org/webroot/; + index index.php; + + access_log /var/log/editor.r3js.org/access.log; + error_log /var/log/editor.r3js.org/error.log; + + location / { + try_files $uri $uri/ /index.php?$args; + } + + location ~ \.php$ { + try_files $uri =404; + include fastcgi_params; + fastcgi_pass unix:/run/php/php7.2-fpm.sock; + fastcgi_index index.php; + fastcgi_intercept_errors on; + fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name; + } +} diff --git a/nginx/sites-available/websocket.r3js.org.conf b/nginx/sites-available/websocket.r3js.org.conf new file mode 100644 index 0000000..64b2fe3 --- /dev/null +++ b/nginx/sites-available/websocket.r3js.org.conf @@ -0,0 +1,40 @@ +server { + listen 80; + listen [::]:80; + + server_name editor.r3js.org; + + return 301 https://editor.r3js.org$request_uri; +} + +server { + + listen 443 ssl; + listen [::]:443; + + server_name editor.r3js.org; + + ssl_certificate /etc/letsencrypt/live/editor.r3js.org/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/editor.r3js.org/privkey.pem; + include /etc/letsencrypt/options-ssl-nginx.conf; + ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; + + root /usr/share/cybafelo/editor.r3js.org/webroot/; + index index.php; + + access_log /var/log/editor.r3js.org/access.log; + error_log /var/log/editor.r3js.org/error.log; + + location / { + try_files $uri $uri/ /index.php?$args; + } + + location ~ \.php$ { + try_files $uri =404; + include fastcgi_params; + fastcgi_pass unix:/run/php/php7.2-fpm.sock; + fastcgi_index index.php; + fastcgi_intercept_errors on; + fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name; + } +}