equal
deleted
inserted
replaced
10 inactive=720m use_temp_path=off; |
10 inactive=720m use_temp_path=off; |
11 |
11 |
12 server { |
12 server { |
13 listen {{nginx_port}}; |
13 listen {{nginx_port}}; |
14 # listen [::]:{{nginx_port}}; |
14 # listen [::]:{{nginx_port}}; |
15 server_name _; |
15 server_name {{nginx_server_name}}; |
16 return 301 https://$host$request_uri; |
16 return 301 https://$host$request_uri; |
17 } |
17 } |
18 |
18 |
19 # Enable SSL session caching for improved performance |
19 # Enable SSL session caching for improved performance |
20 ssl_session_cache shared:ssl_session_cache:10m; |
20 ssl_session_cache shared:ssl_session_cache:10m; |
21 |
21 |
22 server { |
22 server { |
23 listen {{nginx_ssl_port}} ssl http2; |
23 listen {{nginx_ssl_port}} ssl http2; |
24 # listen [::]:{{nginx_ssl_port}} ssl ipv6only=on; |
24 # listen [::]:{{nginx_ssl_port}} ssl ipv6only=on; |
25 server_name _; |
25 server_name {{nginx_server_name}}; |
26 |
26 |
27 ssl_certificate {{nginx_ssl_cert}}; |
27 ssl_certificate {{nginx_ssl_cert}}; |
28 ssl_certificate_key {{nginx_ssl_privkey}}; |
28 ssl_certificate_key {{nginx_ssl_privkey}}; |
29 include /etc/letsencrypt/options-ssl-nginx.conf; |
29 include /etc/letsencrypt/options-ssl-nginx.conf; |
30 # ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; |
30 # ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; |