Przeglądaj źródła

serve status page for matrix.DOMAIN only

pull/234/head
p5t2vspoqqw 6 lat temu
rodzic
commit
4b8190dc3f
3 zmienionych plików z 18 dodań i 16 usunięć
  1. +4
    -2
      docs/configuring-playbook-ngnix.md
  2. +3
    -14
      roles/matrix-nginx-proxy/templates/nginx/conf.d/matrix-domain.conf.j2
  3. +11
    -0
      roles/matrix-nginx-proxy/templates/nginx/conf.d/matrix-synapse.conf.j2

+ 4
- 2
docs/configuring-playbook-ngnix.md Wyświetl plik

@@ -9,13 +9,15 @@ If that's alright, you can skip this.
This will serve a statuspage to the hosting machine only. Useful for monitoring software like [longview](https://www.linode.com/docs/platform/longview/longview-app-for-nginx/) This will serve a statuspage to the hosting machine only. Useful for monitoring software like [longview](https://www.linode.com/docs/platform/longview/longview-app-for-nginx/)


```yaml ```yaml
matrix_nginx_proxy_nginx_status_enabled: true
matrix_nginx_proxy_proxy_matrix_nginx_status_enabled: true
``` ```


This will serve the status page under ```matrix.DOMAIN/nginx_status```

In default ```matrix_nginx_proxy_nginx_status_enabled``` will add the local ip adress. If you wish to listen to other ip-adresses provide a list: In default ```matrix_nginx_proxy_nginx_status_enabled``` will add the local ip adress. If you wish to listen to other ip-adresses provide a list:


```yaml ```yaml
matrix_nginx_proxy_nginx_status_allowed_addresses:
matrix_nginx_proxy_proxy_matrix_nginx_status_allowed_addresses:
- 8.8.8.8 - 8.8.8.8
- 1.1.1.1 - 1.1.1.1
``` ```

+ 3
- 14
roles/matrix-nginx-proxy/templates/nginx/conf.d/matrix-domain.conf.j2 Wyświetl plik

@@ -5,27 +5,16 @@ server {


server_tokens off; server_tokens off;


{% if matrix_nginx_proxy_nginx_status_enabled %}
location /nginx_status {
stub_status on;
access_log off;
{% for address in matrix_nginx_proxy_nginx_status_allowed_addresses %}
allow {{ address }};
{% endfor %}
deny all;
}
{% endif %}

location /.well-known/acme-challenge { location /.well-known/acme-challenge {
{% if matrix_nginx_proxy_enabled %}
{% if matrix_nginx_proxy_enabled %}
{# Use the embedded DNS resolver in Docker containers to discover the service #} {# Use the embedded DNS resolver in Docker containers to discover the service #}
resolver 127.0.0.11 valid=5s; resolver 127.0.0.11 valid=5s;
set $backend "matrix-certbot:8080"; set $backend "matrix-certbot:8080";
proxy_pass http://$backend; proxy_pass http://$backend;
{% else %}
{% else %}
{# Generic configuration for use outside of our container setup #} {# Generic configuration for use outside of our container setup #}
proxy_pass http://127.0.0.1:{{ matrix_ssl_lets_encrypt_certbot_standalone_http_port }}; proxy_pass http://127.0.0.1:{{ matrix_ssl_lets_encrypt_certbot_standalone_http_port }};
{% endif %}
{% endif %}
} }


location / { location / {


+ 11
- 0
roles/matrix-nginx-proxy/templates/nginx/conf.d/matrix-synapse.conf.j2 Wyświetl plik

@@ -17,6 +17,17 @@ server {
{% endif %} {% endif %}
} }


{% if matrix_nginx_proxy_proxy_matrix_nginx_status_enabled %}
location /nginx_status {
stub_status on;
access_log off;
{% for address in matrix_nginx_proxy_proxy_matrix_nginx_status_allowed_addresses %}
allow {{ address }};
{% endfor %}
deny all;
}
{% endif %}

location / { location / {
return 301 https://$http_host$request_uri; return 301 https://$http_host$request_uri;
} }


Ładowanie…
Anuluj
Zapisz