ansible-base/roles/element-and-nginx/templates/conf.j2

31 lines
703 B
Text
Raw Normal View History

{% macro element_common() %}
2024-06-24 20:19:04 +02:00
root {{var_element_and_nginx_path}};
{% endmacro %}
server {
2024-06-24 20:19:04 +02:00
server_name {{var_element_and_nginx_domain}};
listen 80;
listen [::]:80;
2024-06-01 18:14:21 +02:00
{% if (var_element_and_nginx_tls_mode == "force") %}
2024-06-24 20:19:04 +02:00
return 301 https://$http_host$request_uri;
{% else %}
{{ element_common() }}
2024-06-24 20:19:04 +02:00
{% endif %}
}
{% if (var_element_and_nginx_tls_mode != "disable") %}
2024-06-24 20:19:04 +02:00
server {
server_name {{var_element_and_nginx_domain}};
2024-06-01 18:14:21 +02:00
2024-06-24 20:19:04 +02:00
listen 443 ssl;
listen [::]:443 ssl;
2023-12-17 00:14:45 +01:00
ssl_certificate /etc/ssl/fullchains/{{var_element_and_nginx_domain}}.pem;
ssl_certificate_key /etc/ssl/private/{{var_element_and_nginx_domain}}.pem;
include /etc/nginx/ssl-hardening.conf;
2024-06-01 18:14:21 +02:00
{{ element_common() }}
}
2024-06-24 20:19:04 +02:00
{% endif %}