diff --git a/calibre-web.conf b/calibre-web.conf index d41de1d..2b29e6b 100644 --- a/calibre-web.conf +++ b/calibre-web.conf @@ -9,6 +9,9 @@ server { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto $scheme; + proxy_set_header Remote-User $remote_user; + auth_pam "calibre-web"; + auth_pam_service_name "sssd"; client_max_body_size 200M; } } diff --git a/cockpit.conf b/cockpit.conf deleted file mode 100644 index 1513e1f..0000000 --- a/cockpit.conf +++ /dev/null @@ -1,22 +0,0 @@ -server { - listen 443 ssl; - listen [::]:443 ssl; - server_name portal.exozy.me; - - location / { - # Required to proxy the connection to Cockpit - proxy_pass https://localhost:9090; - proxy_set_header Host $host; - proxy_set_header X-Forwarded-Proto $scheme; - - # Required for web sockets to function - proxy_http_version 1.1; - proxy_buffering off; - proxy_set_header Upgrade $http_upgrade; - proxy_set_header Connection "upgrade"; - - # Pass ETag header from Cockpit to clients. - # See: https://github.com/cockpit-project/cockpit/issues/5239 - gzip off; - } -} diff --git a/forgejo.conf b/forgejo.conf deleted file mode 100644 index e4c2542..0000000 --- a/forgejo.conf +++ /dev/null @@ -1,18 +0,0 @@ -server { - listen 443 ssl; - listen [::]:443 ssl; - server_name git.exozy.me; - - if ($http_user_agent = "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; spider-feedback@bytedance.com)") { - return 444; - } - - location / { - proxy_pass http://unix:/run/forgejo/forgejo.sock; - proxy_set_header Host $host; - proxy_set_header X-Real-IP $remote_addr; - proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; - proxy_set_header X-Forwarded-Proto $scheme; - client_max_body_size 1G; - } -} diff --git a/guacamole.conf b/guacamole.conf index 7541bce..cd9136f 100644 --- a/guacamole.conf +++ b/guacamole.conf @@ -10,6 +10,5 @@ server { proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection $http_connection; - access_log off; } } diff --git a/jupyterhub.conf b/jupyterhub.conf index c5ecf7f..ec910b0 100644 --- a/jupyterhub.conf +++ b/jupyterhub.conf @@ -15,7 +15,6 @@ server { proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection $http_connection; proxy_cookie_path /guacamole/ /hub/desk/; - access_log off; } # Managing literal requests to the JupyterHub front end @@ -32,8 +31,5 @@ server { proxy_set_header X-Scheme $scheme; proxy_buffering off; - - # Allow big uploads - client_max_body_size 1G; } } diff --git a/nvpie.conf b/nvpie.conf index d85d09c..77ea264 100644 --- a/nvpie.conf +++ b/nvpie.conf @@ -11,6 +11,5 @@ server { location / { try_files $uri $uri.html $uri/ =404; - } } diff --git a/pages.conf b/pages.conf index 23fa12f..cf2dba9 100644 --- a/pages.conf +++ b/pages.conf @@ -26,5 +26,7 @@ server { proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "Upgrade"; + + client_max_body_size 20M; } } diff --git a/synapse.conf b/synapse.conf deleted file mode 100644 index 7522bae..0000000 --- a/synapse.conf +++ /dev/null @@ -1,19 +0,0 @@ -server { - listen 443 ssl; - listen [::]:443 ssl; - server_name chat.exozy.me; - - location / { - proxy_pass http://localhost:8008; - proxy_set_header X-Forwarded-For $remote_addr; - proxy_set_header X-Forwarded-Proto $scheme; - proxy_set_header Host $host; - - # Nginx by default only allows file uploads up to 1M in size - # Increase client_max_body_size to match max_upload_size defined in homeserver.yaml - client_max_body_size 1G; - - # Stop access_log spam - access_log off; - } -}