nginx-proxy/default.conf

108 lines
3.4 KiB
Plaintext
Raw Normal View History

2023-05-07 11:03:39 +00:00
server {
root /usr/share/nginx/html;
index index.html index.htm index.nginx-debian.html;
server_name _; # managed by Certbot
2023-05-07 11:52:43 +00:00
location /auth {
if ($request_method = OPTIONS) {
add_header Access-Control-Allow-Origin $http_origin always;
add_header Access-Control-Allow-Credentials true always;
2023-05-07 19:16:18 +00:00
add_header Access-Control-Allow-Headers content-type,authorization always;
2023-05-07 11:52:43 +00:00
return 200;
}
if ($host = admin.pena.digital) {
proxy_pass http://admin-auth-service:8080;
}
if ($host != admin.pena.digital) {
proxy_pass http://pena-auth-service:8080;
}
proxy_hide_header Access-Control-Allow-Origin;
add_header Access-Control-Allow-Origin $http_origin always;
add_header Access-Control-Allow-Credentials true always;
}
location /user {
2023-05-07 19:29:36 +00:00
add_header Access-Control-Allow-Origin $http_origin always;
add_header Access-Control-Allow-Credentials true always;
add_header Access-Control-Allow-Headers content-type,authorization always;
2023-05-07 11:52:43 +00:00
proxy_pass http://pena-auth-service:8080;
}
location /swagger/ {
proxy_pass http://pena-auth-service:8080/;
}
location /cookie {
add_header Access-Control-Allow-Origin $http_origin;
add_header Access-Control-Allow-Credentials true;
add_header Set-Cookie "test=sameshit;SameSite=None;HttpOnly;Secure;";
return 200;
}
location /heruvym/ {
2023-05-07 19:34:05 +00:00
#add_header Access-Control-Allow-Origin $http_origin always;
2023-05-07 19:29:36 +00:00
add_header Access-Control-Allow-Credentials true always;
add_header Access-Control-Allow-Headers content-type,authorization always;
2023-05-07 11:52:43 +00:00
proxy_set_header Referer $host;
proxy_set_header Origin $http_origin;
proxy_set_header Connection '';
proxy_http_version 1.1;
chunked_transfer_encoding off;
proxy_buffering off;
proxy_cache off;
proxy_pass https://10.6.0.11:1488/;
}
location /strator/ {
2023-05-07 19:34:05 +00:00
#add_header Access-Control-Allow-Origin $http_origin always;
2023-05-07 19:29:36 +00:00
add_header Access-Control-Allow-Credentials true always;
add_header Access-Control-Allow-Headers content-type,authorization always;
2023-05-07 11:52:43 +00:00
proxy_pass http://hub-admin-backend-service:8005/;
}
location /feedback/ {
2023-05-07 15:07:31 +00:00
if ($request_method = OPTIONS) {
add_header Access-Control-Allow-Origin $http_origin always;
add_header Access-Control-Allow-Credentials true always;
add_header Access-Control-Allow-Headers content-type always;
return 200;
}
2023-05-07 15:34:30 +00:00
add_header Access-Control-Allow-Origin $http_origin always;
add_header Access-Control-Allow-Credentials true always;
add_header Access-Control-Allow-Headers content-type always;
2023-05-07 11:52:43 +00:00
proxy_set_header Host $host;
proxy_pass http://10.6.0.31:8006/;
}
2023-05-07 11:03:39 +00:00
location / {
if ($host = hub.pena.digital) {
proxy_pass http://hub;
}
if ($host = docs.pena.digital) {
proxy_pass http://docs;
2023-05-07 11:52:43 +00:00
}
if ($host = admin.pena.digital) {
2023-05-08 17:17:02 +00:00
proxy_pass http://admin_front;
2023-05-07 11:52:43 +00:00
}
if ($host = services.pena.digital) {
proxy_pass http://services;
}
if ($host = links.pena.digital) {
proxy_pass http://dwarfener;
}
if ($host = oauth.pena.digital) {
proxy_pass http://pena-social-auth-service:8000;
2023-05-07 11:03:39 +00:00
}
}
listen [::]:443 ssl ipv6only=on; # managed by Certbot
listen 443 ssl; # managed by Certbot
ssl_certificate /etc/nginx/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/nginx/privkey.pem; # managed by Certbot
}
server {
listen 80 ;
listen [::]:80 ;
server_name _;
return 301 https://$host$request_uri;
}