aboutsummaryrefslogtreecommitdiffstats
path: root/terminaldweller.com/rss-bridge
diff options
context:
space:
mode:
authorterminaldweller <devi@terminaldweller.com>2023-05-04 19:24:48 +0000
committerterminaldweller <devi@terminaldweller.com>2023-05-04 19:24:48 +0000
commit4b0ef68be03ebbe9da56520d62ce372f66a2a12f (patch)
treefc794093f386283021776ebde9ebea982ccdc617 /terminaldweller.com/rss-bridge
parentupdates (diff)
downloadscripts-4b0ef68be03ebbe9da56520d62ce372f66a2a12f.tar.gz
scripts-4b0ef68be03ebbe9da56520d62ce372f66a2a12f.zip
update
Diffstat (limited to 'terminaldweller.com/rss-bridge')
-rw-r--r--terminaldweller.com/rss-bridge/docker-compose.yaml3
-rw-r--r--terminaldweller.com/rss-bridge/nginx.conf6
2 files changed, 5 insertions, 4 deletions
diff --git a/terminaldweller.com/rss-bridge/docker-compose.yaml b/terminaldweller.com/rss-bridge/docker-compose.yaml
index 4ddf7e1..eba20d4 100644
--- a/terminaldweller.com/rss-bridge/docker-compose.yaml
+++ b/terminaldweller.com/rss-bridge/docker-compose.yaml
@@ -33,6 +33,7 @@ services:
- NET_BIND_SERVICE
volumes:
- ./nginx.conf:/etc/nginx/nginx.conf:ro
- - /etc/letsencrypt/archive/rssgen.terminaldweller.com/:/certs/:ro
+ - /etc/letsencrypt/live/rssgen.terminaldweller.com/fullchain.pem:/etc/letsencrypt/live/rssgen.terminaldweller.com/fullchain.pem:ro
+ - /etc/letsencrypt/live/rssgen.terminaldweller.com/privkey.pem:/etc/letsencrypt/live/rssgen.terminaldweller.com/privkey.pem:ro
networks:
rssbridgenet:
diff --git a/terminaldweller.com/rss-bridge/nginx.conf b/terminaldweller.com/rss-bridge/nginx.conf
index b80883b..a6588e9 100644
--- a/terminaldweller.com/rss-bridge/nginx.conf
+++ b/terminaldweller.com/rss-bridge/nginx.conf
@@ -9,8 +9,8 @@ http {
listen 443 ssl;
keepalive_timeout 60;
charset utf-8;
- ssl_certificate /certs/fullchain1.pem;
- ssl_certificate_key /certs/privkey1.pem;
+ ssl_certificate /etc/letsencrypt/live/rssgen.terminaldweller.com/fullchain.pem;
+ ssl_certificate_key /etc/letsencrypt/live/rssgen.terminaldweller.com/privkey.pem;
ssl_ciphers HIGH:!aNULL:!MD5:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384;
ssl_protocols TLSv1.2 TLSv1.3;
ssl_session_cache shared:SSL:50m;
@@ -30,7 +30,7 @@ http {
# resolver 9.9.9.9 208.67.222.222;
# ssl_stapling on;
# ssl_stapling_verify on;
- ssl_trusted_certificate /certs/cert1.pem;
+ # ssl_trusted_certificate /certs/cert1.pem;
error_page 401 403 404 /404.html;
location / {