servnest-mkosi/mkosi.extra/install/nginx/sites/no-tls.conf

22 lines
463 B
Plaintext

# This server block should listen on port 80 to warn users they tried to make an unsecure connection
server {
listen [::1]:42080 default_server;
listen 127.0.0.1:42080 default_server;
location / {
return 403; # Don't allow unsecure HTTP requests
}
error_page 403 /http-messages/unsecure;
location /http-messages {
include inc/apache-proxy.conf;
}
# To get TLS certificates
location /.well-known/acme-challenge {
root /srv/servnest/acme/;
}
}