Skip to content

Commit 5914e26

Browse files
committed
Bug #15634: Allow nginx to disable ssl.
1 parent f7489f7 commit 5914e26

File tree

4 files changed

+9
-3
lines changed

4 files changed

+9
-3
lines changed

deployment/roles/reverse/defaults/main.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,7 @@
11
---
22

33
vitamui_reverse_external_protocol: https
4+
reverse_proxy_port: "{{ 443 if vitamui_reverse_external_protocol | lower == 'https' else 80 }}"
45
reverse_connection_params: "acquire=5000 connectiontimeout=300 timeout=600 retry=5"
56

67
assets_path: "{{ vitamui_defaults.folder.root_path }}/conf/assets"

deployment/roles/reverse/tasks/nginx/nginx.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -29,6 +29,7 @@
2929
- reverse.key
3030
- dhparam.pem
3131
notify: reload nginx
32+
when: vitamui_reverse_external_protocol | lower == 'https'
3233

3334
- name: Ensure nginx is started
3435
systemd:

deployment/roles/reverse/templates/apache/httpd_config

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
1-
<VirtualHost {{ ip_service }}:{{ reverse_proxy_port | default(443) }}>
1+
<VirtualHost {{ ip_service }}:{{ reverse_proxy_port }}>
22

3-
{% if vitamui_reverse_external_protocol | default('https') | lower == 'https' %}
3+
{% if vitamui_reverse_external_protocol | lower == 'https' %}
44
SSLEngine on
55
SSLCertificateFile /etc/{{ apache_service }}/certs/reverse.crt
66
SSLCertificateKeyFile /etc/{{ apache_service }}/certs/reverse.key

deployment/roles/reverse/templates/nginx/conf.d/vhosts.conf.j2

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,12 @@
11
#jinja2: lstrip_blocks: True
22
server {
33

4-
listen {{ ip_service }}:443 ssl;
4+
{% if vitamui_reverse_external_protocol | lower == 'https' %}
5+
listen {{ ip_service }}:{{ reverse_proxy_port }} ssl;
56
include {{ nginx_ssl_dir }}/ssl.conf;
7+
{% else %}
8+
listen {{ ip_service }}:{{ reverse_proxy_port }};
9+
{% endif %}
610

711
server_name {{ vitamui_reverse_external_dns }};
812

0 commit comments

Comments
 (0)