mirror of
https://github.com/FAUSheppy/no-secrets-athq-ansible
synced 2025-12-10 06:48:33 +01:00
feat: add nginx media & cdn from web1
This commit is contained in:
16
roles/docker-deployments/files/cdn.conf
Normal file
16
roles/docker-deployments/files/cdn.conf
Normal file
@@ -0,0 +1,16 @@
|
||||
server {
|
||||
autoindex on;
|
||||
autoindex_localtime on;
|
||||
|
||||
listen 5051;
|
||||
root /var/www/cdn/;
|
||||
|
||||
add_header Vary Accept-Encoding;
|
||||
add_header Access-Control-Allow-Origin $http_origin;
|
||||
|
||||
location /videos/{
|
||||
default_type video/mp4;
|
||||
limit_rate 2m;
|
||||
autoindex on;
|
||||
}
|
||||
}
|
||||
2
roles/docker-deployments/files/htpasswd
Normal file
2
roles/docker-deployments/files/htpasswd
Normal file
@@ -0,0 +1,2 @@
|
||||
kathi:$y$j9T$HISTORY_PURGED_SECRET
|
||||
sheppy:$y$HISTORY_PURGED_SECRET
|
||||
19
roles/docker-deployments/files/ipcheck.conf
Normal file
19
roles/docker-deployments/files/ipcheck.conf
Normal file
@@ -0,0 +1,19 @@
|
||||
server {
|
||||
listen 5053;
|
||||
|
||||
access_log off;
|
||||
gzip off;
|
||||
default_type text/plain;
|
||||
|
||||
if ($remote_addr ~* 172\.16\.1\.(.+)){
|
||||
return 200 "$remote_addr (This is a local VPN ip, it is NOT your true external ip!)";
|
||||
}
|
||||
|
||||
if ($remote_addr ~* 192\.168\.122\.1){
|
||||
return 200 $http_x_real_ip;
|
||||
}
|
||||
|
||||
location / {
|
||||
return 200 $remote_addr;
|
||||
}
|
||||
}
|
||||
28
roles/docker-deployments/files/media.conf
Normal file
28
roles/docker-deployments/files/media.conf
Normal file
@@ -0,0 +1,28 @@
|
||||
map $http_x_nginx_cert_auth $basic_auth_val {
|
||||
default "private";
|
||||
true off;
|
||||
}
|
||||
|
||||
server {
|
||||
|
||||
|
||||
autoindex on;
|
||||
autoindex_localtime on;
|
||||
|
||||
listen 5052;
|
||||
root /var/www/media;
|
||||
|
||||
add_header Vary Accept-Encoding;
|
||||
add_header Access-Control-Allow-Origin $http_origin;
|
||||
|
||||
location /videos/{
|
||||
default_type video/mp4;
|
||||
limit_rate 2m;
|
||||
autoindex on;
|
||||
}
|
||||
|
||||
location /auth/{
|
||||
auth_basic $basic_auth_val;
|
||||
auth_basic_user_file /etc/nginx/htpasswd_1;
|
||||
}
|
||||
}
|
||||
Reference in New Issue
Block a user