# # Working dev server config # server { listen 443 ssl; ssl_certificate /home/mab/ss/client/certs/192.168.1.164+4.pem; ssl_certificate_key /home/mab/ss/client/certs/192.168.1.164+4-key.pem; ssl_session_cache shared:SSL:1m; ssl_session_timeout 5m; ssl_protocols TLSV1.1 TLSV1.2 TLSV1.3; ssl_ciphers HIGH:!aNULL:!MD5; ssl_prefer_server_ciphers on; access_log /var/log/nginx/httpslocalhost.access.log; error_log /var/log/nginx/httpslocalhost.error.log; client_max_body_size 20M; location / { proxy_pass https://127.0.0.1:8081; proxy_set_header Host localhost; proxy_set_header X-Forwarded-Host localhost; proxy_set_header X-Forwarded-Server localhost; proxy_set_header X-Forwarded-Proto $scheme; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $remote_addr; proxy_redirect off; proxy_connect_timeout 90s; proxy_read_timeout 90s; proxy_send_timeout 90s; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } location /sockjs-node { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Host $http_host; proxy_set_header X-NginX-Proxy true; proxy_pass https://127.0.0.1:8081; proxy_redirect off; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } location /api { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Host $http_host; proxy_set_header X-NginX-Proxy true; proxy_pass http://127.0.0.1:3000; proxy_redirect off; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } location /socket { proxy_pass http://127.0.0.1:3001; proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "Upgrade"; proxy_set_header Host $host; } } ## ## Working Copy below -------------------------------------------- ## server { listen 443 ssl; ssl_certificate /home/mab/ss/client/certs/192.168.1.164+4.pem; ssl_certificate_key /home/mab/ss/client/certs/192.168.1.164+4-key.pem; ssl_session_cache shared:SSL:1m; ssl_session_timeout 5m; ssl_protocols TLSV1.1 TLSV1.2 TLSV1.3; ssl_ciphers HIGH:!aNULL:!MD5; ssl_prefer_server_ciphers on; access_log /var/log/nginx/httpslocalhost.access.log; error_log /var/log/nginx/httpslocalhost.error.log; client_max_body_size 20M; location / { proxy_pass https://127.0.0.1:8081; proxy_set_header Host localhost; proxy_set_header X-Forwarded-Host localhost; proxy_set_header X-Forwarded-Server localhost; proxy_set_header X-Forwarded-Proto $scheme; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $remote_addr; proxy_redirect off; proxy_connect_timeout 90s; proxy_read_timeout 90s; proxy_send_timeout 90s; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } location /sockjs-node { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Host $http_host; proxy_set_header X-NginX-Proxy true; proxy_pass https://127.0.0.1:8081; proxy_redirect off; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } location /api { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Host $http_host; proxy_set_header X-NginX-Proxy true; proxy_pass http://127.0.0.1:3000; proxy_redirect off; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } location /socket { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Host $http_host; proxy_set_header X-NginX-Proxy true; proxy_pass http://127.0.0.1:3001; proxy_redirect off; proxy_ssl_protocols TLSv1 TLSv1.1 TLSv1.2; } } # Prod settings to serve static index # location / { # autoindex on; # #try_files $uri $uri/ /index.html; # } # location / { # #autoindex on # # proxy_pass http://127.0.0.1:8444; # proxy_http_version 1.1; # proxy_set_header Upgrade $http_upgrade; # proxy_set_header Connection 'upgrade'; # proxy_set_header Host $host; # proxy_cache_bypass $http_upgrade; # }