mirror of
https://github.com/myvesta/vesta.git
synced 2024-11-24 14:30:14 -08:00
85 lines
2.7 KiB
Plaintext
85 lines
2.7 KiB
Plaintext
server {
|
|
listen %ip%:%web_ssl_port% ssl http2;
|
|
server_name %domain_idn% %alias_idn%;
|
|
root %sdocroot%;
|
|
index index.php index.html index.htm;
|
|
access_log /var/log/nginx/domains/%domain%.log combined;
|
|
access_log /var/log/nginx/domains/%domain%.bytes bytes;
|
|
error_log /var/log/nginx/domains/%domain%.error.log error;
|
|
|
|
ssl_certificate %ssl_pem%;
|
|
ssl_certificate_key %ssl_key%;
|
|
|
|
location = /favicon.ico {
|
|
log_not_found off;
|
|
access_log off;
|
|
}
|
|
|
|
location = /robots.txt {
|
|
allow all;
|
|
log_not_found off;
|
|
access_log off;
|
|
}
|
|
|
|
rewrite ^/caldav(.*)$ /remote.php/caldav$1 redirect;
|
|
rewrite ^/carddav(.*)$ /remote.php/carddav$1 redirect;
|
|
rewrite ^/webdav(.*)$ /remote.php/webdav$1 redirect;
|
|
|
|
error_page 403 = /core/templates/403.php;
|
|
error_page 404 = /core/templates/404.php;
|
|
|
|
location ~ ^/(?:\.htaccess|data|config|db_structure\.xml|README){
|
|
deny all;
|
|
}
|
|
|
|
location / {
|
|
# The following 2 rules are only needed with webfinger
|
|
rewrite ^/.well-known/host-meta /public.php?service=host-meta last;
|
|
rewrite ^/.well-known/host-meta.json /public.php?service=host-meta-json last;
|
|
rewrite ^/.well-known/carddav /remote.php/carddav/ redirect;
|
|
rewrite ^/.well-known/caldav /remote.php/caldav/ redirect;
|
|
rewrite ^(/core/doc/[^\/]+/)$ $1/index.html;
|
|
try_files $uri $uri/ /index.php;
|
|
|
|
location ~ \.php(?:$|/) {
|
|
fastcgi_split_path_info ^(.+\.php)(/.+)$;
|
|
include /etc/nginx/fastcgi_params;
|
|
fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
|
|
fastcgi_param PATH_INFO $fastcgi_path_info;
|
|
#fastcgi_param HTTPS on;
|
|
fastcgi_pass %backend_lsnr%;
|
|
}
|
|
}
|
|
|
|
location ~* ^.+\.(jpeg|jpg|png|gif|bmp|ico|svg|css|js)$ {
|
|
expires max;
|
|
# Some basic cache-control for static files to be sent to the browser
|
|
add_header Pragma public;
|
|
add_header Cache-Control "public, must-revalidate, proxy-revalidate";
|
|
}
|
|
|
|
#error_page 403 /error/404.html;
|
|
#error_page 404 /error/404.html;
|
|
error_page 500 502 503 504 /error/50x.html;
|
|
|
|
location /error/ {
|
|
alias %home%/%user%/web/%domain%/document_errors/;
|
|
}
|
|
|
|
location ~* "/\.(htaccess|htpasswd)$" {
|
|
deny all;
|
|
return 404;
|
|
}
|
|
|
|
location /vstats/ {
|
|
alias %home%/%user%/web/%domain%/stats/;
|
|
include %home%/%user%/conf/web/%domain%.auth*;
|
|
}
|
|
|
|
include /etc/nginx/conf.d/phpmyadmin.inc*;
|
|
include /etc/nginx/conf.d/phppgadmin.inc*;
|
|
include /etc/nginx/conf.d/webmail.inc*;
|
|
|
|
include %home%/%user%/conf/web/snginx.%domain%.conf*;
|
|
}
|