ansible/roles/rp_synapse/templates/reverse_proxy
2022-07-22 11:20:26 +02:00

35 lines
1.2 KiB
Text

{{ ansible_managed | comment }}
server {
listen 443 ssl http2;
listen [::]:443 ssl http2;
listen 8448 ssl http2;
listen [::]:8448 ssl http2;
server_name {{ matrix_server_name }};
ssl_certificate /etc/nginx/certs/{{ matrix_server_name }}.crt;
ssl_certificate_key /etc/nginx/certs/{{ matrix_server_name }}.key;
# Logs
access_log /var/log/nginx/synapse_rp_{{ matrix_server_name }}.log;
error_log /var/log/nginx/synapse_rp_{{ matrix_server_name }}_error.log;
location /.well-known/matrix/server {
return 200 '{"m.server": "{{ matrix_server_name }}:443"}';
default_type application/json;
add_header Access-Control-Allow-Origin *;
}
location ~* ^(\/_matrix|\/_synapse\/client) {
proxy_pass https://{{ matrix_local_server_name }};
proxy_set_header X-Forwarded-For $remote_addr;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_set_header Host $host;
# Nginx by default only allows file uploads up to 1M in size
# Increase client_max_body_size to match max_upload_size defined in homeserver.yaml
client_max_body_size {{ matrix_max_upload_size }};
}
}