2018-01-07 21:42:27 +00:00
|
|
|
<span ng-if="data.https"># certbot certonly --non-interactive --text --email {{ data.email }} --agree-tos --force-renew --webroot --webroot-path /var/www/_letsencrypt --domain {{ data.domain }} --domain www.{{ data.domain }}{{ data.cdn ? ' --domain cdn.' + data.domain : '' }}
|
2018-01-07 15:30:12 +00:00
|
|
|
server {
|
|
|
|
listen 443 ssl{{ data.http2 ? ' http2' : '' }};
|
|
|
|
listen [::]:443 ssl{{ data.http2 ? ' http2' : '' }};
|
|
|
|
|
2018-01-07 21:42:27 +00:00
|
|
|
server_name {{ !data.non_www ? 'www.' : '' }}{{ data.domain }};<span ng-if="data.php !== 'off'">
|
2018-01-07 15:30:12 +00:00
|
|
|
set $base /var/www/{{ data.domain }};
|
2018-01-07 21:42:27 +00:00
|
|
|
root $base{{ data.document_root }};</span><span ng-if="data.php === 'off'">
|
|
|
|
root /var/www/{{ data.domain }}{{ data.document_root }};</span>
|
2018-01-07 15:30:12 +00:00
|
|
|
|
|
|
|
ssl_certificate /etc/letsencrypt/live/{{ data.domain }}/fullchain.pem;
|
|
|
|
ssl_certificate_key /etc/letsencrypt/live/{{ data.domain }}/privkey.pem;
|
2018-01-07 23:02:48 +00:00
|
|
|
ssl_trusted_certificate /etc/letsencrypt/live/{{ data.domain }}/fullchain.pem;<span ng-if="(data.php !== 'off' && data.index_php) || data.index_html">
|
|
|
|
|
|
|
|
location / {
|
|
|
|
try_files $uri $uri/ {{ data.index_html ? '/index.html' : '' }}{{ data.index_html && data.php !== 'off' && data.index_php ? ' ' : '' }}{{ data.php !== 'off' && data.index_php ? '/index.php?$query_string' : '' }};
|
|
|
|
}</span>
|
2018-01-08 01:49:44 +00:00
|
|
|
<span ng-if="data.file_structure === 'separated'">
|
2018-01-07 15:30:12 +00:00
|
|
|
include _general.conf;<span ng-if="data.php !== 'off' && data.wordpress">
|
|
|
|
include _wordpress.conf;</span><span ng-if="data.php !== 'off'">
|
|
|
|
include _php.conf;</span>
|
|
|
|
include _letsencrypt.conf;
|
2018-01-08 07:28:51 +00:00
|
|
|
include _ssl.conf;</span><span ng-if="data.file_structure === 'unified'">
|
2018-01-08 01:49:44 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_general.conf.html'" onload="refreshHighlighting()"></ng-include><span ng-if="data.php !== 'off' && data.wordpress">
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-08 01:49:44 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_wordpress.conf.html'" onload="refreshHighlighting()"></ng-include></span><span ng-if="data.php !== 'off'">
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-08 01:49:44 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_php.conf.html'" onload="refreshHighlighting()"></ng-include></span>
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-08 01:49:44 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_letsencrypt.conf.html'" onload="refreshHighlighting()"></ng-include></span><span ng-if="data.file_structure === 'unified'">
|
2018-01-07 15:30:12 +00:00
|
|
|
|
|
|
|
include _ssl.conf;</span>
|
2018-01-07 21:42:27 +00:00
|
|
|
}<span ng-if="data.cdn">
|
|
|
|
|
|
|
|
# CDN
|
|
|
|
server {
|
|
|
|
listen 443 ssl{{ data.http2 ? ' http2' : '' }};
|
|
|
|
listen [::]:443 ssl{{ data.http2 ? ' http2' : '' }};
|
|
|
|
|
|
|
|
server_name cdn.{{ data.domain }};
|
|
|
|
root /var/www/{{ data.domain }}{{ data.document_root }};<span ng-if="data.access_log !== ''">
|
|
|
|
|
|
|
|
access_log off;</span>
|
|
|
|
|
|
|
|
ssl_certificate /etc/letsencrypt/live/{{ data.domain }}/fullchain.pem;
|
|
|
|
ssl_certificate_key /etc/letsencrypt/live/{{ data.domain }}/privkey.pem;
|
2018-01-07 21:53:27 +00:00
|
|
|
ssl_trusted_certificate /etc/letsencrypt/live/{{ data.domain }}/fullchain.pem;<span ng-if="data.gzip">
|
|
|
|
|
|
|
|
# gzip
|
|
|
|
gzip on;
|
|
|
|
gzip_vary on;
|
|
|
|
gzip_proxied any;
|
|
|
|
gzip_comp_level 6;
|
|
|
|
gzip_types {{ gzipTypes }};</span>
|
2018-01-07 21:42:27 +00:00
|
|
|
|
|
|
|
include _ssl.conf;
|
|
|
|
|
|
|
|
location ~* \.(?:{{ extensions.assets }}|{{ extensions.fonts }}|{{ extensions.svg }}|{{ extensions.images }}|{{ extensions.audio }}|{{ extensions.video }}|{{ extensions.docs }})$ {
|
|
|
|
add_header Access-Control-Allow-Origin "*";
|
|
|
|
add_header Cache-Control "public";
|
|
|
|
expires 30d;
|
|
|
|
}
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-07 21:42:27 +00:00
|
|
|
location / {
|
2018-01-07 21:53:27 +00:00
|
|
|
deny all;
|
2018-01-07 21:42:27 +00:00
|
|
|
}
|
|
|
|
}</span>
|
|
|
|
|
|
|
|
# HTTPS {{ !data.non_www ? 'domain, ' : '' }}subdomains redirect
|
2018-01-07 15:30:12 +00:00
|
|
|
server {
|
|
|
|
listen 443 ssl{{ data.http2 ? ' http2' : '' }};
|
|
|
|
listen [::]:443 ssl{{ data.http2 ? ' http2' : '' }};
|
|
|
|
|
|
|
|
server_name {{ !data.non_www ? data.domain + ' ' : '' }}*.{{ data.domain }};
|
|
|
|
|
|
|
|
ssl_certificate /etc/letsencrypt/live/{{ data.domain }}/fullchain.pem;
|
|
|
|
ssl_certificate_key /etc/letsencrypt/live/{{ data.domain }}/privkey.pem;
|
|
|
|
ssl_trusted_certificate /etc/letsencrypt/live/{{ data.domain }}/fullchain.pem;
|
|
|
|
|
|
|
|
include _ssl.conf;
|
|
|
|
|
|
|
|
return 301 https://{{ !data.non_www ? 'www.' : '' }}{{ data.domain }}$request_uri;
|
|
|
|
}
|
|
|
|
|
2018-01-07 21:42:27 +00:00
|
|
|
# HTTP redirect
|
2018-01-07 15:30:12 +00:00
|
|
|
server {
|
|
|
|
listen 80;
|
2018-01-07 21:42:27 +00:00
|
|
|
listen [::]:80;
|
2018-01-07 15:30:12 +00:00
|
|
|
|
|
|
|
server_name {{ data.domain }} *.{{ data.domain }};
|
2018-01-08 01:49:44 +00:00
|
|
|
<span ng-if="data.file_structure === 'separated'">
|
2018-01-08 07:28:51 +00:00
|
|
|
include _letsencrypt.conf;</span><span ng-if="data.file_structure === 'unified'">
|
2018-01-08 09:27:13 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_letsencrypt.conf.html'" onload="refreshHighlighting()"></ng-include></span>
|
2018-01-07 15:30:12 +00:00
|
|
|
|
|
|
|
return 301 https://{{ !data.non_www ? 'www.' : '' }}{{ data.domain }}$request_uri;
|
|
|
|
}</span><span ng-if="!data.https">server {
|
|
|
|
listen 80;
|
2018-01-07 21:42:27 +00:00
|
|
|
listen [::]:80;
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-07 21:42:27 +00:00
|
|
|
server_name {{ !data.non_www ? 'www.' : '' }}{{ data.domain }};<span ng-if="data.php !== 'off'">
|
2018-01-07 15:30:12 +00:00
|
|
|
set $base /var/www/{{ data.domain }};
|
2018-01-07 21:42:27 +00:00
|
|
|
root $base{{ data.document_root }};</span><span ng-if="data.php === 'off'">
|
2018-01-07 23:02:48 +00:00
|
|
|
root /var/www/{{ data.domain }}{{ data.document_root }};</span><span ng-if="(data.php !== 'off' && data.index_php) || data.index_html">
|
|
|
|
|
|
|
|
location / {
|
|
|
|
try_files $uri $uri/ {{ data.index_html ? '/index.html' : '' }}{{ data.index_html && data.php !== 'off' && data.index_php ? ' ' : '' }}{{ data.php !== 'off' && data.index_php ? '/index.php?$query_string' : '' }};
|
|
|
|
}</span>
|
2018-01-08 01:49:44 +00:00
|
|
|
<span ng-if="data.file_structure === 'separated'">
|
2018-01-07 15:30:12 +00:00
|
|
|
include _general.conf;<span ng-if="data.php !== 'off' && data.wordpress">
|
|
|
|
include _wordpress.conf;</span><span ng-if="data.php !== 'off'">
|
2018-01-08 07:28:51 +00:00
|
|
|
include _php.conf;</span></span><span ng-if="data.file_structure === 'unified'">
|
2018-01-08 01:54:19 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_general.conf.html'" onload="refreshHighlighting()"></ng-include><span ng-if="data.php !== 'off' && data.wordpress">
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-08 01:54:19 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_wordpress.conf.html'" onload="refreshHighlighting()"></ng-include></span><span ng-if="data.php !== 'off'">
|
2018-01-07 15:30:12 +00:00
|
|
|
|
2018-01-08 01:54:19 +00:00
|
|
|
<ng-include ng-include-tabs="2" src="'templates/_php.conf.html'" onload="refreshHighlighting()"></ng-include></span></span>
|
2018-01-07 21:42:27 +00:00
|
|
|
}<span ng-if="data.cdn">
|
|
|
|
|
|
|
|
# CDN
|
|
|
|
server {
|
|
|
|
listen 80;
|
|
|
|
listen [::]:80;
|
|
|
|
|
|
|
|
server_name cdn.{{ data.domain }};
|
|
|
|
root /var/www/{{ data.domain }}{{ data.document_root }};<span ng-if="data.access_log !== ''">
|
|
|
|
|
2018-01-07 21:53:27 +00:00
|
|
|
access_log off;</span><span ng-if="data.gzip">
|
|
|
|
|
|
|
|
# gzip
|
|
|
|
gzip on;
|
|
|
|
gzip_vary on;
|
|
|
|
gzip_proxied any;
|
|
|
|
gzip_comp_level 6;
|
|
|
|
gzip_types {{ gzipTypes }};</span>
|
2018-01-07 21:42:27 +00:00
|
|
|
|
|
|
|
location ~* \.(?:{{ extensions.assets }}|{{ extensions.fonts }}|{{ extensions.svg }}|{{ extensions.images }}|{{ extensions.audio }}|{{ extensions.video }}|{{ extensions.docs }})$ {
|
|
|
|
add_header Access-Control-Allow-Origin "*";
|
|
|
|
add_header Cache-Control "public";
|
|
|
|
expires 30d;
|
|
|
|
}
|
|
|
|
|
|
|
|
location / {
|
2018-01-07 21:53:27 +00:00
|
|
|
deny all;
|
2018-01-07 21:42:27 +00:00
|
|
|
}
|
|
|
|
}</span>
|
2018-01-07 15:30:12 +00:00
|
|
|
|
|
|
|
# {{ !data.non_www ? 'domain, ' : '' }}subdomains redirect
|
|
|
|
server {
|
|
|
|
listen 80;
|
|
|
|
listen [::]:80;
|
|
|
|
|
|
|
|
server_name {{ !data.non_www ? data.domain + ' ' : '' }}*.{{ data.domain }};
|
|
|
|
|
|
|
|
return 301 http://{{ !data.non_www ? 'www.' : '' }}{{ data.domain }}$request_uri;
|
2018-01-08 01:49:44 +00:00
|
|
|
}</span>
|