From 7bcd7a5b12c428dcb6e60a94ff315a9e39511d13 Mon Sep 17 00:00:00 2001 From: terminaldweller Date: Wed, 23 Nov 2022 12:15:51 +0330 Subject: update --- terminaldweller.com/cargo/docker-compose.yaml | 5 +++++ terminaldweller.com/cargo/nginx.conf | 6 +++--- 2 files changed, 8 insertions(+), 3 deletions(-) (limited to 'terminaldweller.com/cargo') diff --git a/terminaldweller.com/cargo/docker-compose.yaml b/terminaldweller.com/cargo/docker-compose.yaml index ef2e1b8..7cbb5d9 100644 --- a/terminaldweller.com/cargo/docker-compose.yaml +++ b/terminaldweller.com/cargo/docker-compose.yaml @@ -12,7 +12,12 @@ services: volumes: - ./nginx.conf:/etc/nginx/nginx.conf:ro - /home/ubuntu/cargo:/cargo + - /etc/letsencrypt/archive/cargo.terminaldweller.com/:/certs/ cap_drop: - ALL + cap_add: + - CHOWN + - SETGID + - SETUID networks: cargonet: diff --git a/terminaldweller.com/cargo/nginx.conf b/terminaldweller.com/cargo/nginx.conf index 118825c..eafeeee 100644 --- a/terminaldweller.com/cargo/nginx.conf +++ b/terminaldweller.com/cargo/nginx.conf @@ -3,10 +3,10 @@ events { } http { server { - listen 8080 ssl; + listen 8080 ssl http2; keepalive_timeout 70; - ssl_certificate /certs/server.cert; - ssl_certificate_key /certs/server.key; + ssl_certificate /certs/cert1.pem; + ssl_certificate_key /certs/privkey1.pem; ssl_protocols TLSv1.2 TLSv1.3; ssl_ciphers HIGH:!aNULL:!MD5; sendfile on; -- cgit v1.2.3