forked from CCCHH/ansible-infra
		
	This groups the files and templates for each host together and therefore makes it easier to see all the (config) files for a host. Also clean up incorrect, unused docker_compose config for mumble and clean up unused engelsystem configs.
		
			
				
	
	
		
			26 lines
		
	
	
	
		
			900 B
		
	
	
	
		
			Text
		
	
	
	
	
	
			
		
		
	
	
			26 lines
		
	
	
	
		
			900 B
		
	
	
	
		
			Text
		
	
	
	
	
	
server {
 | 
						|
	root /var/www/html;
 | 
						|
    server_name lists.hamburg.ccc.de; # managed by Certbot
 | 
						|
 | 
						|
    listen [::]:443 ssl; # managed by Certbot
 | 
						|
    listen 443 ssl; # managed by Certbot
 | 
						|
 | 
						|
    ssl_certificate /etc/letsencrypt/live/lists.hamburg.ccc.de/fullchain.pem; # managed by Certbot
 | 
						|
    ssl_certificate_key /etc/letsencrypt/live/lists.hamburg.ccc.de/privkey.pem; # managed by Certbot
 | 
						|
    # verify chain of trust of OCSP response using Root CA and Intermediate certs
 | 
						|
    ssl_trusted_certificate /etc/letsencrypt/live/lists.hamburg.ccc.de/chain.pem;
 | 
						|
 | 
						|
    # HSTS (ngx_http_headers_module is required) (63072000 seconds)
 | 
						|
    add_header Strict-Transport-Security "max-age=63072000" always;
 | 
						|
 | 
						|
    location /static {
 | 
						|
        alias /opt/mailman/web/static;
 | 
						|
        autoindex off;
 | 
						|
    }
 | 
						|
 | 
						|
    location / {
 | 
						|
          uwsgi_pass localhost:8080;
 | 
						|
          include uwsgi_params;
 | 
						|
          uwsgi_read_timeout 300;
 | 
						|
    }
 | 
						|
}
 |