Настройка nginx conf в качестве reverse proxy для облачного офиса — различия между версиями

Материал из Wiki AlterOS
Перейти к: навигация, поиск
(Config 2:)
(Config 2:)
 
(не показана 1 промежуточная версия этого же участника)
Строка 32: Строка 32:
  
 
==== Config 2: ====
 
==== Config 2: ====
 +
Конфигурационный файл nginx editors.alteroffice.ru.conf
 
  server {
 
  server {
server_name editors7.alteroffice.ru;
+
          server_name editors.alteroffice.ru;
location / {
+
          location / {
proxy_buffering  off;
+
              proxy_buffering  off;
proxy_pass        http://192.168.120.133:9980/;
+
              proxy_pass        http://192.168.120.133:9980/;
proxy_redirect    default;
+
              proxy_redirect    default;
client_max_body_size                4G;
+
      client_max_body_size                4G;
proxy_set_header Host $host;
+
      proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
+
              proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
+
              proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
+
              proxy_set_header X-Forwarded-Proto $scheme;
}
+
          }
 +
 
 +
      # static files
 +
      location ^~ /loleaflet {
 +
proxy_buffering  off;
 +
        proxy_pass http://192.168.120.133:9980;
 +
        proxy_set_header Host $http_host;
 +
    }
 
   
 
   
# static files
+
    # WOPI discovery URL
location ^~ /loleaflet {
+
    location ^~ /hosting/discovery {
proxy_buffering  off;
+
proxy_buffering  off;      
proxy_pass http://192.168.120.133:9980;
+
proxy_pass http://192.168.120.133:9980;
proxy_set_header Host $http_host;
+
        proxy_set_header Host $http_host;
}
+
    }
 
   
 
   
# WOPI discovery URL
+
    # Capabilities
location ^~ /hosting/discovery {
+
    location ^~ /hosting/capabilities {
proxy_buffering  off;         
+
proxy_buffering  off;         
proxy_pass http://192.168.120.133:9980;
+
proxy_pass http://192.168.120.133:9980;
proxy_set_header Host $http_host;
+
        proxy_set_header Host $http_host;
}
+
    }
 
   
 
   
# Capabilities
+
    # main websocket
location ^~ /hosting/capabilities {
+
    location ~ ^/lool/(.*)/ws$ {
proxy_buffering  off;         
+
proxy_buffering  off;         
proxy_pass http://192.168.120.133:9980;
+
proxy_pass http://192.168.120.133:9980;
proxy_set_header Host $http_host;
+
        proxy_set_header Upgrade $http_upgrade;
}
+
        proxy_set_header Connection "Upgrade";
 +
        proxy_set_header Host $http_host;
 +
        proxy_read_timeout 36000s;
 +
    }
 
   
 
   
# main websocket
+
    # download, presentation and image upload
location ~ ^/lool/(.*)/ws$ {
+
    location ~ ^/lool {
proxy_buffering  off;         
+
proxy_buffering  off;         
proxy_pass http://192.168.120.133:9980;
+
proxy_pass http://192.168.120.133:9980;
proxy_set_header Upgrade $http_upgrade;
+
        proxy_set_header Host $http_host;
proxy_set_header Connection "Upgrade";
+
    }
proxy_set_header Host $http_host;
 
proxy_read_timeout 36000s;
 
}
 
 
   
 
   
# download, presentation and image upload
+
    # Admin Console websocket
location ~ ^/lool {
+
    location ^~ /lool/adminws {
proxy_buffering  off;         
+
proxy_buffering  off;         
proxy_pass http://192.168.120.133:9980;
+
proxy_pass http://192.168.120.133:9980;
proxy_set_header Host $http_host;
+
        proxy_set_header Upgrade $http_upgrade;
}
+
        proxy_set_header Connection "Upgrade";
 +
        proxy_set_header Host $http_host;
 +
        proxy_read_timeout 36000s;
 +
    }
 
   
 
   
# Admin Console websocket
+
    listen 443 ssl; # managed by Certbot
location ^~ /lool/adminws {
+
    ssl_certificate /etc/letsencrypt/live/editors.alteroffice.ru/fullchain.pem; # managed by Certbot
proxy_buffering  off;      
+
    ssl_certificate_key /etc/letsencrypt/live/editors.alteroffice.ru/privkey.pem; # managed by Certbot
proxy_pass http://192.168.120.133:9980;
+
    include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
proxy_set_header Upgrade $http_upgrade;
+
    ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
proxy_set_header Connection "Upgrade";
 
proxy_set_header Host $http_host;
 
proxy_read_timeout 36000s;
 
}
 
 
   
 
   
listen 443 ssl; # managed by Certbot
+
}
ssl_certificate /etc/letsencrypt/live/editors7.alteroffice.ru/fullchain.pem; # managed by Certbot
+
server {
ssl_certificate_key /etc/letsencrypt/live/editors7.alteroffice.ru/privkey.pem; # managed by Certbot
+
    if ($host = editors.alteroffice.ru) {
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
+
        return 301 https://$host$request_uri;
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
+
    } # managed by Certbot
 
 
}
 
server {
 
if ($host = editors7.alteroffice.ru) {
 
return 301 https://$host$request_uri;
 
} # managed by Certbot
 
 
   
 
   
server_name editors7.alteroffice.ru;
+
        server_name editors.alteroffice.ru;
 
   
 
   
listen 80;
+
    listen 80;
return 404; # managed by Certbot
+
    return 404; # managed by Certbot
}
+
}

Текущая версия на 10:48, 9 ноября 2022

Конфигурационный файл nginx web.alteroffice.ru.conf

Config 1:

server {
       server_name web.alteroffice.ru;
       location / {
           proxy_buffering  off;
           proxy_pass         http://192.168.120.204/;
           proxy_redirect     default;
           client_max_body_size                4G;
           proxy_set_header Host $host;
           proxy_set_header X-Real-IP $remote_addr;
           proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
           proxy_set_header X-Forwarded-Proto $scheme;
       }
   listen 443 ssl; # managed by Certbot
   ssl_certificate /etc/letsencrypt/live/web.alteroffice.ru/fullchain.pem; # managed by Certbot
   ssl_certificate_key /etc/letsencrypt/live/web.alteroffice.ru/privkey.pem; # managed by Certbot
   include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
   ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
}
server {
   if ($host = web.alteroffice.ru) {
       return 301 https://$host$request_uri;
   } # managed by Certbot

   server_name web.alteroffice.ru;

   listen 80;
   return 404; # managed by Certbot
} 


Config 2:

Конфигурационный файл nginx editors.alteroffice.ru.conf

server {
         server_name editors.alteroffice.ru;
         location / {
             proxy_buffering  off;
             proxy_pass         http://192.168.120.133:9980/;
             proxy_redirect     default;
 	    client_max_body_size                4G;
 	    proxy_set_header Host $host;
             proxy_set_header X-Real-IP $remote_addr;
             proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
             proxy_set_header X-Forwarded-Proto $scheme;
         }
 
     # static files
     location ^~ /loleaflet {
proxy_buffering  off;
        proxy_pass http://192.168.120.133:9980;
        proxy_set_header Host $http_host;
    }

    # WOPI discovery URL
    location ^~ /hosting/discovery {
proxy_buffering  off;        
proxy_pass http://192.168.120.133:9980;
        proxy_set_header Host $http_host;
    }

    # Capabilities
    location ^~ /hosting/capabilities {
proxy_buffering  off;        
proxy_pass http://192.168.120.133:9980;
        proxy_set_header Host $http_host;
    }

    # main websocket
    location ~ ^/lool/(.*)/ws$ {
proxy_buffering  off;        
proxy_pass http://192.168.120.133:9980;
        proxy_set_header Upgrade $http_upgrade;
        proxy_set_header Connection "Upgrade";
        proxy_set_header Host $http_host;
        proxy_read_timeout 36000s;
    }

    # download, presentation and image upload
    location ~ ^/lool {
proxy_buffering  off;        
proxy_pass http://192.168.120.133:9980;
        proxy_set_header Host $http_host;
    }

    # Admin Console websocket
    location ^~ /lool/adminws {
proxy_buffering  off;        
proxy_pass http://192.168.120.133:9980;
        proxy_set_header Upgrade $http_upgrade;
        proxy_set_header Connection "Upgrade";
        proxy_set_header Host $http_host;
        proxy_read_timeout 36000s;
    }

    listen 443 ssl; # managed by Certbot
    ssl_certificate /etc/letsencrypt/live/editors.alteroffice.ru/fullchain.pem; # managed by Certbot
    ssl_certificate_key /etc/letsencrypt/live/editors.alteroffice.ru/privkey.pem; # managed by Certbot
    include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
    ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot

}
server {
    if ($host = editors.alteroffice.ru) {
        return 301 https://$host$request_uri;
    } # managed by Certbot

        server_name editors.alteroffice.ru;

    listen 80;
    return 404; # managed by Certbot
}