From 4db20d5e541d1de944fc647193be658f3e90a1d8 Mon Sep 17 00:00:00 2001 From: Edwin Lyon <53972157+practical-engelbart@users.noreply.github.com> Date: Thu, 17 Sep 2020 17:35:33 -0700 Subject: [PATCH] Update default --- nginx/default | 27 ++++++++++++++++++++++++--- 1 file changed, 24 insertions(+), 3 deletions(-) diff --git a/nginx/default b/nginx/default index 4970db0..b59eb8d 100644 --- a/nginx/default +++ b/nginx/default @@ -29,7 +29,7 @@ server { server { listen 443 ssl; listen [::]:443 ssl ipv6only=on; - server_name example.com www.example.com mail.example.com autodiscover.example.com autoconfig.example.com; + server_name www.example.com; ssl_certificate /etc/letsencrypt/live/example.com/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/example.com/privkey.pem; @@ -41,5 +41,26 @@ server { ssl_stapling on; ssl_stapling_verify on; - return 301 https://$host$request_uri; -} + return 301 https://example.com$request_uri; + } + +server { + listen 443 ssl; + listen [::]:443 ssl ipv6only=on; + server_name example.com; + + ssl_certificate /etc/letsencrypt/live/example.com/fullchain.pem; + ssl_certificate_key /etc/letsencrypt/live/example.com/privkey.pem; + + include /etc/nginx/snippets/ssl.conf; + ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; + + ssl_trusted_certificate /etc/letsencrypt/live/example.com/chain.pem + include /etc/nginx/snippets/stapling.conf; + + include /etc/nginx/snippets/security.conf; + + root /var/www/example.com/public; + index index.html index.htm; + + }