summaryrefslogtreecommitdiff
path: root/setup-git-web-interface/nginx-config.conf
blob: 4059a5ee5259bb2fa279cc99881d71195600ac04 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
# Configuration Nginx pour GitLab
# À placer dans /etc/nginx/sites-available/gitlab
# Puis créer un lien symbolique: sudo ln -s /etc/nginx/sites-available/gitlab /etc/nginx/sites-enabled/

upstream gitlab {
    server 127.0.0.1:80;
}

server {
    listen 80;
    server_name chillka.example.com;  # Remplacer par votre domaine ou IP

    # Redirection vers HTTPS (décommenter après configuration SSL)
    # return 301 https://$server_name$request_uri;

    location / {
        proxy_pass http://gitlab;
        proxy_set_header Host $host;
        proxy_set_header X-Real-IP $remote_addr;
        proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
        proxy_set_header X-Forwarded-Proto $scheme;
        
        # Timeouts pour les grandes opérations
        proxy_read_timeout 300s;
        proxy_connect_timeout 75s;
    }
}

# Configuration HTTPS (décommenter après avoir configuré SSL)
# server {
#     listen 443 ssl http2;
#     server_name chillka.example.com;
# 
#     ssl_certificate /etc/letsencrypt/live/chillka.example.com/fullchain.pem;
#     ssl_certificate_key /etc/letsencrypt/live/chillka.example.com/privkey.pem;
#     ssl_protocols TLSv1.2 TLSv1.3;
#     ssl_ciphers HIGH:!aNULL:!MD5;
# 
#     location / {
#         proxy_pass http://gitlab;
#         proxy_set_header Host $host;
#         proxy_set_header X-Real-IP $remote_addr;
#         proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
#         proxy_set_header X-Forwarded-Proto $scheme;
#         
#         proxy_read_timeout 300s;
#         proxy_connect_timeout 75s;
#     }
# }