NGINX config for newest eve-ng

Moderator: mike

Post Reply
janostasik
Posts: 31
Joined: Thu Jan 18, 2018 11:43 am

NGINX config for newest eve-ng

Post by janostasik » Thu May 30, 2019 9:35 am

Guys, maybe this will help someone....I am running NGINX as my reverse proxy and configured https access via internet, directly to my eve. This configuration works for html5 console, not for native console.

server {
server_name eve.xxxxxxx.xx;

listen 443 ssl; # managed by Certbot
ssl_certificate /etc/letsencrypt/live/eve.xxxxxxxxxx/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/letsencrypt/live/eve.xxxxxxxxxx/privkey.pem; # managed by Certbot
include /etc/nginx/snippets/strong-ssl.conf;

satisfy any;
allow 192.168.252.0/24;
allow 10.10.10.0/24;
allow 192.168.250.0/24;
deny all;

# Basic Auth to protect the site
auth_basic "Restricted";
auth_basic_user_file /etc/nginx/.htpasswd;


location /html5/ {
proxy_http_version 1.1;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection "upgrade";
proxy_set_header X-Forwarded-Host $host;
proxy_set_header X-Forwarded-Server $host;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://192.168.250.14/html5/;
}


location / {
proxy_set_header X-Forwarded-Host $host;
proxy_set_header X-Forwarded-Server $host;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header Host $host;
proxy_pass https://192.168.250.14/;
}
}

server {
if ($host = eve.xxxxxxx.xx) {
return 301 https://$host$request_uri;
} # managed by Certbot


listen 80;
server_name eve.xxxxxxx.xx;
return 404; # managed by Certbot

Post Reply