groupe-meditation/ansible/roles/nginx/templates/groupe-meditation.conf.j2

38 lines
1 KiB
Text
Raw Normal View History

server {
listen 80;
server_name {{ groupe_meditation_domain }};
add_header X-Content-Type-Options nosniff always;
add_header X-Frame-Options DENY always;
add_header X-XSS-Protection "1; mode=block" always;
add_header Referrer-Policy strict-origin-when-cross-origin always;
location /api/ {
proxy_pass http://{{ groupe_meditation_api_host }}:{{ groupe_meditation_api_port }};
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
root {{ groupe_meditation_web_root }};
index index.html;
location ~* \.(js|css|png|jpg|svg|woff2|ico)$ {
expires 1y;
add_header Cache-Control "public, immutable";
try_files $uri =404;
}
location / {
try_files $uri $uri/ /index.html;
}
location = /index.html {
add_header Cache-Control "no-cache, no-store, must-revalidate";
}
client_max_body_size 5M;
}