Commit Graph

47 Commits (5db2920644d8a82e53eaef228e39edef1e6af5aa)

Author SHA1 Message Date
kPherox 99b4847da3
Fix missing changes in pleroma/pleroma!1197
5 years ago
rinpatch 997e766929 Remove sudo in the nginx config command example
5 years ago
rinpatch c013d3f3c8 Fix the webroot method in the nginx config
5 years ago
rinpatch ddf5e6254a Fix nginx webroot method config
5 years ago
Alfie Pates 356c047759 explicitly set reverse proxy upstream to IPv4
5 years ago
lambda 1b4c4d29a3 Merge branch 'ssl_trusted_cert' into 'develop'
6 years ago
Horsemans 10a9682596 ssl_trusted_certificate should point to chain.pem if we're demonstrating LetsEncrypt: https://community.letsencrypt.org/t/howto-ocsp-stapling-for-nginx/13611/5
6 years ago
Kenneth Zhao e1bdaaa3fe need to put back ipv4 listen instruct
6 years ago
PEA d3a6c065a4 Add ipv6 handling to pleroma.nginx
6 years ago
shibayashi 1d8b578bb7
Recommend the acme-challenge path that is used in the installation guides
6 years ago
Mark Felder cc3a83a730 Fix nginx caching issues
6 years ago
Mark Felder d56772c813 proxy buffering still needs to be off
6 years ago
Mark Felder 48c4f88ffd Update proxy config to improve behavior and allow compatibility with Safari on MacOS and iOS
6 years ago
href 97b00d366f
reverse_proxy: more headers
6 years ago
William Pitcock e4bd5a6950 example configs: kill STS/CT headers
6 years ago
William Pitcock 057a9017b3 example configs: remove obsolete CSP configuration
6 years ago
William Pitcock fd918863aa nginx example config: remove CORS headers, now managed by CORSPlug.
6 years ago
kaniini e1c40b8ca2 Merge branch 'patch-2' into 'develop'
6 years ago
Hakaba Hitoyo 3ea4f9ac8d Remove Access-Control-Allow-Origin
6 years ago
shibayashi 800d233631
Use example.tld so a single search and replace works
6 years ago
shibayashi 732d3fce73
Use the same example domain in all config examples
6 years ago
shibayashi 56c49513e0
Use the server name as variable
6 years ago
barrucadu a32e013909 Relax form-action content security policy
6 years ago
shibayashi d027c53d75
Add frame-ancestors 'none' to all configs
6 years ago
shibayashi d035566116
installation/pleroma.nginx: Add 'always' to the security headers, so that they are included regardless of the status code
6 years ago
Haelwenn (lanodan) Monnier 0fd2eaf7af
installation/pleroma.nginx: Add Content-Security-Policy
6 years ago
Artik Banana 394d0c94c4 Add comment about TLS curves for older servers.
6 years ago
dex 750cfbf38d * fix nginx 1.15 warning:
6 years ago
Artik Banana 93c614bf13 * Removed TLSv1 and TLSv1.1
6 years ago
Artik Banana c645a8de2b Security upgrades:
6 years ago
Dominik V. Salonen a6fd9c4b00 Update pleroma.nginx
6 years ago
Niklas Poslovski f0e8194a71 Repair some access-control headers required for third-party webclients
6 years ago
Niklas Poslovski d81a4e9280
Add access-control-expose-headers to Nginx default config
6 years ago
Artik Banana 0a1fd8adf0 Added headers for a more secure default.
6 years ago
csaurus 1c6a691570 Add info about certbot with the webroot plugin to pleroma.nginx
7 years ago
Hector A. Escobedo 7e262c2997 Fix max upload size in nginx config.
7 years ago
William Pitcock d8464b603e nginx: document how to enable CORS support
7 years ago
lambda f8f3abe1be Update pleroma.nginx
7 years ago
lambda 060ac6cb95 Update pleroma.nginx
7 years ago
lambda 46c8f79cd7 Merge branch 'feature/cross-origin' into 'develop'
7 years ago
Hakaba Hitoyo 9c0c40cf1e Access-Control-Allow-Origin
7 years ago
Hakaba Hitoyo aceef36e56 Correct pleroma.nginx
7 years ago
href 9093b2cf49
Merge remote-tracking branch 'upstream/develop' into media-proxy
7 years ago
href d1806ec07f
nginx sample config, quickly tested
7 years ago
eal afd0ea37f3 Add websocket upgrade to example nginx config.
7 years ago
Henry Jameson a6e89ae6a3 disable sslv3
7 years ago
Henry Jameson 9112eda14f First attempt at installation documentation
7 years ago