| | |
| | | |
| | | server { |
| | | listen 80; |
| | | server_name localhost; |
| | | server_name local80; |
| | | |
| | | location / { |
| | | root /usr/share/nginx/html; |
| | |
| | | proxy_pass http://gateway:8001/system; |
| | | } |
| | | |
| | | # actuator |
| | | if ($request_uri ~ "/actuator") { |
| | | return 403; |
| | | } |
| | | |
| | | error_page 500 502 503 504 /50x.html; |
| | | |
| | | location = /50x.html { |
| | | root html; |
| | | } |
| | | } |
| | | } |
| | | |
| | | server { |
| | | listen 443 ssl; |
| | | listen [::]:443 ssl; |
| | | server_name local443; |
| | | |
| | | ssl_certificate /etc/nginx/conf.d/ssl/ssl2035.crt; |
| | | ssl_certificate_key /etc/nginx/conf.d/ssl/ssl2035.key; |
| | | ssl_session_cache shared:SSL:50m; |
| | | ssl_session_timeout 7d; |
| | | ssl_ciphers HIGH:!aNULL:!MD5; |
| | | ssl_protocols TLSv1.2 TLSv1.3; |
| | | ssl_prefer_server_ciphers on; |
| | | |
| | | location / { |
| | | root /usr/share/nginx/html; |
| | | try_files $uri $uri/ /index.html /sso/index.html; |
| | | index index.html index.htm; |
| | | } |
| | | |
| | | location /sso { |
| | | alias /usr/share/nginx/html/sso; |
| | | try_files $uri $uri/ /sso/; |
| | | #index index.html index.htm; |
| | | } |
| | | |
| | | location /api/ { |
| | | proxy_set_header Host $http_host; |
| | | proxy_set_header X-Real-IP $remote_addr; |
| | | proxy_set_header REMOTE-HOST $remote_addr; |
| | | proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; |
| | | |
| | | proxy_pass http://gateway:8001/; |
| | | } |
| | | |
| | | location /system { |
| | | proxy_set_header Host $http_host; |
| | | proxy_set_header X-Real-IP $remote_addr; |
| | | proxy_set_header REMOTE-HOST $remote_addr; |
| | | proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; |
| | | |
| | | proxy_pass http://gateway:8001/system; |
| | | } |
| | | |
| | | error_page 500 502 503 504 /50x.html; |
| | | |
| | | location = /50x.html { |
| | | root html; |
| | | } |
| | | } |
| | | } |