From afdd4806fcd15a02cd4caa74c252dc9db8455a21 Mon Sep 17 00:00:00 2001 From: Maximilian Date: Wed, 10 Dec 2014 14:09:01 +0100 Subject: Added more config files. --- monit/nginx-vhost.conf | 25 +++++++++++++++++++++++++ 1 file changed, 25 insertions(+) create mode 100644 monit/nginx-vhost.conf (limited to 'monit/nginx-vhost.conf') diff --git a/monit/nginx-vhost.conf b/monit/nginx-vhost.conf new file mode 100644 index 0000000..1a33323 --- /dev/null +++ b/monit/nginx-vhost.conf @@ -0,0 +1,25 @@ +server { + listen 443 ssl; + server_name monit.example.org + + ssl_certificate /etc/nginx/ssl/example.crt; + ssl_certificate_key /etc/nginx/ssl/example.key; + + ssl_prefer_server_ciphers On; + ssl_protocols TLSv1 TLSv1.1 TLSv1.2; + ssl_ciphers ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS; + add_header Strict-Transport-Security max-age=15768000; + ssl_session_cache shared:SSL:50m; + ssl_session_timeout 10m; + + location / { + proxy_pass http://127.0.0.1:2812; + proxy_set_header Host 127.0.0.1; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + add_header Front-End-Https on; + } + +} + -- cgit v1.2.3