From 95bf5fe583f3877d9df955b985ed502531544f53 Mon Sep 17 00:00:00 2001 From: valitovgaziz Date: Wed, 10 Sep 2025 15:57:54 +0500 Subject: [PATCH] modified: serv_nginx/nginx/nginx-ssl.conf delete space --- serv_nginx/nginx/nginx-ssl.conf | 144 ++++++++++++++++---------------- 1 file changed, 72 insertions(+), 72 deletions(-) diff --git a/serv_nginx/nginx/nginx-ssl.conf b/serv_nginx/nginx/nginx-ssl.conf index 700f092..c089627 100644 --- a/serv_nginx/nginx/nginx-ssl.conf +++ b/serv_nginx/nginx/nginx-ssl.conf @@ -1,11 +1,11 @@ server { listen 80; server_name yalarba.ru www.yalarba.ru valitovgaziz.ru www.valitovgaziz.ru easysite102.ru www.easysite102.ru begushiybashkir.ru xn--80abahjtcfl5d0a8di.xn--p1ai; - + location /.well-known/acme-challenge/ { root /var/www/certbot; } - + location / { return 301 https://$host$request_uri; } @@ -44,115 +44,115 @@ server { } server { - listen 443 ssl; - server_name valitovgaziz.ru www.valitovgaziz.ru; + listen 443 ssl; + server_name valitovgaziz.ru www.valitovgaziz.ru; - ssl_certificate /etc/letsencrypt/live/valitovgaziz.ru/fullchain.pem; - ssl_certificate_key /etc/letsencrypt/live/valitovgaziz.ru/privkey.pem; + ssl_certificate /etc/letsencrypt/live/valitovgaziz.ru/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/valitovgaziz.ru/privkey.pem; # Additional SSL settings ssl_protocols TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; ssl_ciphers "EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH"; - location / { - root /usr/share/nginx/valitovgaziz/html; - index index.html; - try_files $uri $uri/ /index.html; - } + location / { + root /usr/share/nginx/valitovgaziz/html; + index index.html; + try_files $uri $uri/ /index.html; + } } server { - listen 443 ssl; - server_name easysite102.ru www.easysite102.ru; + listen 443 ssl; + server_name easysite102.ru www.easysite102.ru; - ssl_certificate /etc/letsencrypt/live/easysite102.ru/fullchain.pem; - ssl_certificate_key /etc/letsencrypt/live/easysite102.ru/privkey.pem; + ssl_certificate /etc/letsencrypt/live/easysite102.ru/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/easysite102.ru/privkey.pem; # Additional SSL settings ssl_protocols TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; ssl_ciphers "EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH"; - location / { - root /usr/share/nginx/easysite102/html; - index index.html; - try_files $uri $uri/ /index.html; - } + location / { + root /usr/share/nginx/easysite102/html; + index index.html; + try_files $uri $uri/ /index.html; + } } server { - listen 443 ssl; - server_name xn--80abahjtcfl5d0a8di.xn--p1ai www.xn--80abahjtcfl5d0a8di.xn--p1ai; + listen 443 ssl; + server_name xn--80abahjtcfl5d0a8di.xn--p1ai www.xn--80abahjtcfl5d0a8di.xn--p1ai; - ssl_certificate /etc/letsencrypt/live/xn--80abahjtcfl5d0a8di.xn--p1ai/fullchain.pem; - ssl_certificate_key /etc/letsencrypt/live/xn--80abahjtcfl5d0a8di.xn--p1ai/privkey.pem; + ssl_certificate /etc/letsencrypt/live/xn--80abahjtcfl5d0a8di.xn--p1ai/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/xn--80abahjtcfl5d0a8di.xn--p1ai/privkey.pem; # Additional SSL settings ssl_protocols TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; ssl_ciphers "EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH"; - location / { + location / { root /usr/share/nginx/begushiybashkir/html; - index index.html; - try_files $uri $uri/ /index.html; - } + index index.html; + try_files $uri $uri/ /index.html; + } } server { - listen 443 ssl; - server_name begushiybashkir.ru www.begushiybashkir.ru; + listen 443 ssl; + server_name begushiybashkir.ru www.begushiybashkir.ru; - ssl_certificate /etc/letsencrypt/live/begushiybashkir.ru/fullchain.pem; - ssl_certificate_key /etc/letsencrypt/live/begushiybashkir.ru/privkey.pem; + ssl_certificate /etc/letsencrypt/live/begushiybashkir.ru/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/begushiybashkir.ru/privkey.pem; # Additional SSL settings ssl_protocols TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; ssl_ciphers "EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH"; - location / { - root /usr/share/nginx/begushiybashkir/html; - index index.html; - try_files $uri $uri/ /index.html; - } + location / { + root /usr/share/nginx/begushiybashkir/html; + index index.html; + try_files $uri $uri/ /index.html; + } } - server { - listen 80; - server_name keycloak.yalarba.ru; - - # Перенаправление HTTP на HTTPS - return 301 https://$server_name$request_uri; - } - - server { - listen 443 ssl; - server_name keycloak.yalarba.ru; - - # SSL сертификаты - ssl_certificate /etc/letsencrypt/live/auth.yalarba.ru/fullchain.pem; - ssl_certificate_key /etc/letsencrypt/live/auth.yalarba.ru/privkey.pem; - - # SSL настройки - ssl_protocols TLSv1.2 TLSv1.3; - ssl_ciphers HIGH:!aNULL:!MD5; - - # Проксирование запросов к Keycloak - location / { - proxy_pass http://keycloak; - proxy_set_header Host $host; - proxy_set_header X-Real-IP $remote_addr; - proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; - proxy_set_header X-Forwarded-Proto $scheme; - proxy_set_header X-Forwarded-Host $host; - proxy_set_header X-Forwarded-Port $server_port; - - # Важные настройки для Keycloak - proxy_buffer_size 128k; - proxy_buffers 4 256k; - proxy_busy_buffers_size 256k; - } +server { + listen 80; + server_name auth.yalarba.ru; + + # Перенаправление HTTP на HTTPS + return 301 https://$server_name$request_uri; +} + +server { + listen 443 ssl; + server_name auth.yalarba.ru; + + # SSL сертификаты + ssl_certificate /etc/letsencrypt/live/auth.yalarba.ru/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/auth.yalarba.ru/privkey.pem; + + # SSL настройки + ssl_protocols TLSv1.2 TLSv1.3; + ssl_ciphers HIGH:!aNULL:!MD5; + + # Проксирование запросов к Keycloak + location / { + proxy_pass http://keycloak; + proxy_set_header Host $host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_set_header X-Forwarded-Proto $scheme; + proxy_set_header X-Forwarded-Host $host; + proxy_set_header X-Forwarded-Port $server_port; + + # Важные настройки для Keycloak + proxy_buffer_size 128k; + proxy_buffers 4 256k; + proxy_busy_buffers_size 256k; } +}