ansible-base/roles/element-and-nginx/templates/conf.j2

32 lines
660 B
Text
Raw Normal View History

2024-06-24 20:19:04 +02:00
boilerplate element {
root {{var_element_and_nginx_path}};
}
server {
2024-06-24 20:19:04 +02:00
server_name {{var_element_and_nginx_domain}};
listen 80;
listen [::]:80;
2024-06-01 18:14:21 +02:00
2024-06-24 20:19:04 +02:00
{% if (var_element_and_nginx_tls == "force") %}
return 301 https://$http_host$request_uri;
{% else %}
invoke element;
{% endif %}
}
{% if (var_element_and_nginx_tls != "disable") %}
server {
server_name {{var_element_and_nginx_domain}};
2024-06-01 18:14:21 +02:00
2024-06-24 20:19:04 +02:00
listen 443 ssl;
listen [::]:443 ssl;
2023-12-17 00:14:45 +01:00
ssl_certificate /etc/ssl/fullchains/{{var_element_and_nginx_domain}}.pem;
ssl_certificate_key /etc/ssl/private/{{var_element_and_nginx_domain}}.pem;
include /etc/nginx/ssl-hardening.conf;
2024-06-01 18:14:21 +02:00
2024-06-24 20:19:04 +02:00
invoke element;
}
2024-06-24 20:19:04 +02:00
{% endif %}