- fixed cert mounting

- fixed caddy restart in nm-certs.sh
- aligned all configs
This commit is contained in:
Tobias Cudnik
2023-05-10 17:27:53 +02:00
parent ffbe80cceb
commit f855ca4016
8 changed files with 32 additions and 30 deletions
+6 -6
View File
@@ -1,6 +1,6 @@
# Dashboard
https://dashboard.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
# Apply basic security headers
header {
# Enable cross origin access to *.NETMAKER_BASE_DOMAIN
@@ -22,30 +22,30 @@ https://dashboard.NETMAKER_BASE_DOMAIN {
# API
https://api.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://netmaker:8081
}
# STUN
https://stun.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy netmaker:3478
}
# TURN
https://turn.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy host.docker.internal:3479
}
# TURN API
https://turnapi.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://host.docker.internal:8089
}
# MQ
wss://broker.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy ws://mq:8883 # For EMQX websockets use `reverse_proxy ws://mq:8083`
}
+9 -9
View File
@@ -1,6 +1,6 @@
# Dashboard
https://dashboard.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
# Apply basic security headers
header {
# Enable cross origin access to *.NETMAKER_BASE_DOMAIN
@@ -22,48 +22,48 @@ https://dashboard.NETMAKER_BASE_DOMAIN {
# Netmaker Exporter
https://netmaker-exporter.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://netmaker-exporter:8085
}
# Prometheus
https://prometheus.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://prometheus:9090
}
# Grafana
https://grafana.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://grafana:3000
}
# API
https://api.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://netmaker:8081
}
# STUN
https://stun.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy netmaker:3478
}
# TURN
https://turn.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy host.docker.internal:3479
}
# TURN API
https://turnapi.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy http://host.docker.internal:8089
}
# MQ
wss://broker.NETMAKER_BASE_DOMAIN {
tls /root/fullchain.pem /root/privkey.pem
tls /root/certs/fullchain.pem /root/certs/privkey.pem
reverse_proxy ws://mq:8883
}