diff options
author | terminaldweller <devi@terminaldweller.com> | 2023-05-04 19:24:48 +0000 |
---|---|---|
committer | terminaldweller <devi@terminaldweller.com> | 2023-05-04 19:24:48 +0000 |
commit | 4b0ef68be03ebbe9da56520d62ce372f66a2a12f (patch) | |
tree | fc794093f386283021776ebde9ebea982ccdc617 /terminaldweller.com/rss-bridge | |
parent | updates (diff) | |
download | scripts-4b0ef68be03ebbe9da56520d62ce372f66a2a12f.tar.gz scripts-4b0ef68be03ebbe9da56520d62ce372f66a2a12f.zip |
update
Diffstat (limited to 'terminaldweller.com/rss-bridge')
-rw-r--r-- | terminaldweller.com/rss-bridge/docker-compose.yaml | 3 | ||||
-rw-r--r-- | terminaldweller.com/rss-bridge/nginx.conf | 6 |
2 files changed, 5 insertions, 4 deletions
diff --git a/terminaldweller.com/rss-bridge/docker-compose.yaml b/terminaldweller.com/rss-bridge/docker-compose.yaml index 4ddf7e1..eba20d4 100644 --- a/terminaldweller.com/rss-bridge/docker-compose.yaml +++ b/terminaldweller.com/rss-bridge/docker-compose.yaml @@ -33,6 +33,7 @@ services: - NET_BIND_SERVICE volumes: - ./nginx.conf:/etc/nginx/nginx.conf:ro - - /etc/letsencrypt/archive/rssgen.terminaldweller.com/:/certs/:ro + - /etc/letsencrypt/live/rssgen.terminaldweller.com/fullchain.pem:/etc/letsencrypt/live/rssgen.terminaldweller.com/fullchain.pem:ro + - /etc/letsencrypt/live/rssgen.terminaldweller.com/privkey.pem:/etc/letsencrypt/live/rssgen.terminaldweller.com/privkey.pem:ro networks: rssbridgenet: diff --git a/terminaldweller.com/rss-bridge/nginx.conf b/terminaldweller.com/rss-bridge/nginx.conf index b80883b..a6588e9 100644 --- a/terminaldweller.com/rss-bridge/nginx.conf +++ b/terminaldweller.com/rss-bridge/nginx.conf @@ -9,8 +9,8 @@ http { listen 443 ssl; keepalive_timeout 60; charset utf-8; - ssl_certificate /certs/fullchain1.pem; - ssl_certificate_key /certs/privkey1.pem; + ssl_certificate /etc/letsencrypt/live/rssgen.terminaldweller.com/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/rssgen.terminaldweller.com/privkey.pem; ssl_ciphers HIGH:!aNULL:!MD5:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384; ssl_protocols TLSv1.2 TLSv1.3; ssl_session_cache shared:SSL:50m; @@ -30,7 +30,7 @@ http { # resolver 9.9.9.9 208.67.222.222; # ssl_stapling on; # ssl_stapling_verify on; - ssl_trusted_certificate /certs/cert1.pem; + # ssl_trusted_certificate /certs/cert1.pem; error_page 401 403 404 /404.html; location / { |