Zoey
927d5ca5cb
changes on custom acme server/change compression mime types
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-20 19:48:53 +02:00
Zoey
19c5fe2a87
Merge remote-tracking branch 'upstream/develop' into develop
2024-10-11 12:03:31 +02:00
renovate[bot]
bb09562f89
fixes/dep updates/improved tls
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-02 23:17:42 +02:00
Dhrumil Shah
554d1ff2b6
Add set directives for proxies to keep from crashing if upstream is down
2024-09-04 00:07:43 -04:00
renovate[bot]
132623891a
dep updates/see description
...
little php design preview (dead host/default page/fancyindex)
improved "exploit blocking"
fancyindex now default off
block access to .git folders/files
change NGINX_404_REDIRECT default to false
2024-06-09 15:20:13 +02:00
Zoey
fa739b9e19
merge upstream
2024-05-23 15:30:23 +02:00
clhey
280bac8b43
advanced config move to top of default confg
2024-04-28 18:18:38 +08:00
renovate[bot]
5e9619beef
close #782/update coreruleset/switch to freenginx/dep updates/remove aws cloudfront ips/block apache files
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-04-27 11:04:44 +02:00
renovate[bot]
9e39ddb26b
dep updates/close #674 and parts of #673
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-03-03 20:02:44 +01:00
David Indra
10ece3548d
Fixing "the map directive is not allowed here" at the validation stage (see https://github.com/NginxProxyManager/nginx-proxy-manager/pull/3478 )
2024-02-27 00:42:58 +01:00
Zoey
a6797c9f6b
add goaccess
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-01-14 00:08:36 +01:00
Zoey
3d7877a4a0
merge upstream
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-01-11 22:27:26 +01:00
Zoey
93216d93e4
Merge remote-tracking branch 'upstream/develop' into develop
2024-01-11 21:36:01 +01:00
jc21
09d5e2c94f
Merge pull request #3360 from DarioViva42/hsts-only-with-https
...
only add hsts header with https.
2024-01-09 08:16:01 +10:00
Zoey
d1c5808176
improve custom locations
2024-01-02 03:08:16 +01:00
Zoey
58d28b9867
remove domain_names.sort() and trailing spaces
2024-01-01 23:56:28 +01:00
Jocelyn Le Sage
ccf9cce825
Fixed issue where the HTTP2 support was always enabled in nginx config, no matter what the user configured.
2023-12-09 11:16:37 -05:00
Dario Viva
289e438c59
only add hsts header with https.
...
fixes https://github.com/NginxProxyManager/nginx-proxy-manager/issues/1005
for more information look at: https://websistent.com/add-the-hsts-header-only-for-https-requests-nginx/
2023-12-02 03:26:34 +01:00
Zoey
334127494e
fix Alt-Svc header
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-11-12 15:11:16 +01:00
Zoey
6548a7aea6
fix stream/allow editing modsec conf/readme changes/dep updates
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-11-11 19:04:55 +01:00
renovate[bot]
8987ff9c6d
dep updates/header changes/tls changes
...
Signed-off-by: Zoey <zoey@z0ey.de>
- dep updates
- upodate nginx/certbot
- improve headers
- change NPM to NPMplus in launch.sh
- when using https backend, only TLSv1 to TLSv1.3 is now allowed, whith secure ciphers
2023-10-25 22:54:11 +02:00
Zoey
efcca74d67
fix security headers and sockets
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-10-10 19:55:42 +02:00
Zoey
dec9dc990f
renewer certbot certs after launch/load env from file/listen on socket/disable http in AIO mode
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-10-10 15:52:14 +02:00
Zoey
fb0bb721f7
rebrand to NPMplus/improve security headers/upsteam changes/dockerlint
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-10-09 20:32:37 +02:00
Zoey
f3775aad21
merge upstream
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-08-02 15:02:30 +02:00
Zoey
da025cedaa
Merge branch 'develop-o' into develop
2023-08-02 10:40:13 +02:00
renovate[bot]
cd058f1382
dep updates/nginxbeautifier/fix quic/http3
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-06-15 22:27:17 +02:00
Zoey
cabf78faa8
support connection drop
...
Inspired by #2942 (original NPM)
2023-05-30 18:29:13 +02:00
Zoey
7e6612467f
add modsec
...
Signed-off-by: Zoey <zoey@z0ey.de>
Update Dockerfile
2023-05-29 20:45:08 +02:00
Will Rouesnel
2dd4434ceb
Add support for nginx 444 default response
...
The default nginx 444 response drops the inbound connection without
sending any response to the client.
2023-05-22 11:59:50 +10:00
renovate[bot]
24db873c34
fix access list/dep updates
...
Update dependency @babel/core to v7.21.5
2023-04-30 15:04:07 +02:00
Zoey
1d9c7b0570
Merge branch 'developo' into develop
2023-03-18 11:30:42 +01:00
Jamie Curnow
fec36834f7
- Updated objection, knex, liquidjs, signale and sqlite3 packages
...
- Changes for objection migration
- Moved common access template code to an include
- Fixed access rules configuration generation
2023-03-17 14:18:51 +10:00
Zoey
bdae896baf
rename ssl to tls/dep updates
...
Signed-off-by: Zoey <zoey@z0ey.de>
Update dependency sqlite3 to v5.1.6
Update dependency style-loader to v3.3.2
Update dependency @babel/core to v7.21.3
2023-03-15 18:41:19 +01:00
Zoey
309e81747e
upstream changes (npm/nginx/dependencies) + add eslint
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-03-09 20:57:13 +01:00
Zoey
45895ac53e
enable ssl_early_data, default enable http2, option to enable brotli, fix shellcheck
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-01-26 18:01:25 +01:00
Zoey
e0be3a5ea3
allow to change dummycert
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-01-14 17:13:17 +01:00
Zoey
5a89e9e8e8
change paths and make quic be enabled sepperat
2023-01-06 18:06:49 +01:00
Zoey
6c56070a46
rebrand SSL to TLS
...
Signed-off-by: Zoey <zoey@z0ey.de>
2023-01-03 01:09:44 +01:00
Zoey
d7db5527d9
changes on ssl
...
Signed-off-by: Zoey <zoey@z0ey.de>
2022-12-31 21:24:54 +01:00
Zoey
920bce627a
add php
...
Signed-off-by: Zoey <zoey@z0ey.de>
2022-12-27 22:44:01 +01:00
Zoey
19a304d9ce
init
...
Signed-off-by: Zoey <zoey@z0ey.de>
2022-12-17 14:25:32 +01:00
jc21
adc5a2020a
Merge pull request #1666 from TobiasKneidl/patch-1
...
Update default.conf to follow the default site setting also for ipv6
2021-12-27 11:03:14 +10:00
Tobias Kneidl
bb422d4454
Update default.conf
2021-12-22 00:24:05 +01:00
chaptergy
1f879f67a9
Reverts back to proxy_pass without variables
2021-11-09 13:57:39 +01:00
Julian Reinhardt
c203d1a0d8
Requires ~() in location to remove $request_uri and removes $request_uri if it is just a slash
2021-11-06 13:38:02 +01:00
Julian Reinhardt
3d80759a21
Renames the $upstream variables and does not append $request_ui if capture group exists in location
2021-11-04 10:08:15 +01:00
Julian Reinhardt
bbde7a108a
Use variable with full uri in proxy pass
2021-10-25 14:48:22 +02:00
Julian Reinhardt
87731a8b5c
Revert "Utilise variable for custom locations proxy_pass"
...
This reverts commit 6c1ae77a2a
.
2021-10-25 14:27:37 +02:00
bergi9
f022e84979
Add SSL and HTTP2 into IPv6 on listen.conf
...
I can only server contents with IPv6 because I'm sitting behind CGN on IPv4. When enabling HTTP2 it still not serve contents with HTTP2 as there are missing arguments in the `listen`. But it still does the SSL encryption.
Previous to this commit it generates:
```
listen 80;
listen [::]:80;
listen 443 ssl http2;
listen [::]:443;
```
Now it generates:
```
listen 80;
listen [::]:80;
listen 443 ssl http2;
listen [::]:443 ssl http2;
```
2021-09-07 22:50:49 +02:00