Use cert role to deploy a valid certificate for esphome.ccchh.net
This commit is contained in:
		
					parent
					
						
							
								ca3a30360f
							
						
					
				
			
			
				commit
				
					
						78023f5198
					
				
			
		
					 3 changed files with 15 additions and 3 deletions
				
			
		|  | @ -7,10 +7,14 @@ server { | |||
|     listen 443 ssl http2; | ||||
|     listen [::]:443 ssl http2; | ||||
| 
 | ||||
|     ssl_certificate /etc/ssl/certs/ssl-cert-snakeoil.pem; | ||||
|     ssl_certificate_key /etc/ssl/private/ssl-cert-snakeoil.key; | ||||
|     server_name esphome.ccchh.net; | ||||
| 
 | ||||
|     server_name esphome.z9; | ||||
|     ssl_certificate /etc/ansible_certs/certs/esphome.ccchh.net/fullchain.pem; | ||||
|     ssl_certificate_key /etc/ansible_certs/certs/esphome.ccchh.net/privkey.pem; | ||||
|     # verify chain of trust of OCSP response using Root CA and Intermediate certs | ||||
|     ssl_trusted_certificate /etc/ansible_certs/certs/esphome.ccchh.net/chain.pem; | ||||
| 
 | ||||
|     add_header Strict-Transport-Security "max-age=63072000" always; | ||||
| 
 | ||||
|     location / { | ||||
|         proxy_set_header Host $host; | ||||
|  |  | |||
		Loading…
	
	Add table
		Add a link
		
	
		Reference in a new issue