Commit graph

58 commits

Author SHA1 Message Date
Jérémy Lal
bfb15ce426
Set global error_log to /var/log/error.log
Now that error_log default value is stderr, it is possible
to override that config using nginx -g 'error_log stderr;'
2022-12-15 15:00:22 +01:00
Thomas Ward
9b87224f4f Bug 1010798 - fixes woff2 typo 2022-05-10 12:08:52 -04:00
Thomas Ward
48b9b6e3ea Missed part of mime.types updates 2022-04-19 12:27:49 -04:00
Thomas Ward
8735246ec0 Update d/conf/mime.types again using 1.21.x upstream 2022-04-19 12:27:09 -04:00
Thomas Ward
528e57d73d Update d/conf/mime.types 2022-04-19 10:26:55 -04:00
Ondřej Nový
478b737722 d/conf/nginx.conf: Remove trailing whitespaces 2020-06-04 11:37:49 +02:00
Ondřej Nový
9fbad86c59 d/conf/nginx.conf: Remove keepalive_timeout 65 and use default value 75s. 2020-06-04 11:37:11 +02:00
Ondřej Nový
1459087c8f d/conf/nginx.conf: Remove tcp_nodelay on, which is same as default 2020-06-04 11:36:23 +02:00
Ondřej Nový
c6872b4f53 d/conf/nginx.conf: Enable TLSv1.3 2020-06-04 09:41:10 +02:00
Ondřej Nový
134d203c26 d/conf/sites-available/default: Update PHP path for PHP 7.4 2020-06-04 09:38:07 +02:00
Ondřej Nový
e5f8119f92 Add REMOTE_USER fastcgi param 2020-05-28 19:56:08 +02:00
Christos Trochalakis
0b00911581 Adjust fastcgi_split_path_info snippet to handle the /example.php/ case
We switched to regexp suggest in Nginx docs found at
https://www.nginx.com/resources/wiki/start/topics/examples/phpfcgi/

Closes: #911398
2018-11-23 17:29:41 +02:00
Olaf van der Spek
fd3bbc2f43 Reference PHP 7.3 (Closes: 913250) 2018-11-23 13:34:13 +01:00
Christos Trochalakis
ab3dccab6a Drop gzip_disable "msie6" directive.
IE6 is really deprecated nowdays. Also, this only affected earlier IE6
versions that was later patched to fix this issue.

Closes: #867024
2017-07-07 13:01:25 +03:00
Michael Lustfield
4deb3d7f52 Correcting location of default php-fpm socket. 2016-12-03 07:58:19 +00:00
Michael Lustfield
4cf05a14a9 Removing php major version number from comment 2016-10-29 20:48:02 +00:00
Christos Trochalakis
37b847285a Revert "Adding support for packaged application configurations."
This reverts commit 5d09382c82.

We will include it in a later release (-2) and perhaps adjust
the paths involved.
2016-10-28 09:31:11 +03:00
Michael Lustfield
5d09382c82 Adding support for packaged application configurations. 2016-10-19 06:56:25 +00:00
Michael Lustfield
8c5b5c4f67 More documentation updates. 2016-10-19 06:49:34 +00:00
Michael Lustfield
7bfa979832 Updated PHP sample configuration block. #841230 2016-10-19 04:36:34 +00:00
Christos Trochalakis
7a5fa94b9d Setup modules-{enabled,available} directories
Modules have to be declared with top-level includes
2016-03-29 17:11:19 +03:00
Christos Trochalakis
81f1a374e1 Sync cgi configs with upstream 2015-07-09 11:00:06 +03:00
Michael Lustfield
18315ad1e2 Switch worker_processes to auto. 2015-04-01 18:24:30 -05:00
Michael Lustfield
16c3177924 Updated comment about ssl_ciphers 2015-01-11 17:31:52 -06:00
Michael Lustfield
e3cd58d651 Added comment about ssl_ciphers 2015-01-11 17:31:09 -06:00
Michael Lustfield
2a2ad8931e Updating sample configuration - adding warning about using gzip with ssl. 2015-01-11 14:55:01 -06:00
Christos Trochalakis
a29d2e5a03 Dropping SSLv3 and preferring server cipher order by default, #767456
Those two directives were suggested (commented) in the default vhost
configuration, we are now moving them uncommented to nginx.conf.

SSLv3 is also disabled in other popular web servers in debian, like
apache and haproxy.
2014-11-30 10:15:20 +02:00
Christos Trochalakis
9a4e0f0a69 Suggest disabling SSLv3 in default site 2014-10-16 12:03:02 +03:00
Christos Trochalakis
c15f391783 Introduce a php-fastcgi snippet
Now uncommenting the php comments in the default site
results in a functional php setup, closes #762491.
2014-10-13 10:46:17 +03:00
Christos Trochalakis
c6a5177c86 snakeoil snippet 2014-10-13 10:46:17 +03:00
Christos Trochalakis
5bfd672530 Merge https configuration example into the default server
We also use the cert/key path of the snakeoil certs that are installed
by the ssl-cert package.

ssl-cert is added to suggested packages.
2014-10-13 10:46:17 +03:00
Christos Trochalakis
715b7086fa Revamp default site configuration
* Remove ipv6only=on, it's on by default
 * Remove error pages derective, keep things simple
 * Use _ as the catch all server_name (nginx idiom)
 * Provide a simpler virtual host configuration
2014-10-13 10:46:17 +03:00
Christos Trochalakis
776f6a7e52 Fix a few more issues with the new document root
* Bump debian policy to 3.9.6.0
 * Override lintian dir-or-file-in-var-www error.
   /var/www/html is the new document root and should be create by the
   nginx-common package.
 * Move the default page to index.nginx-debian.html and make
   the index directive for the default site fallback to that location.
   Seems like a cleaner approach.
2014-10-13 10:46:13 +03:00
Christos Trochalakis
74531a5070 Change default document root and provide a new default page 2014-10-01 15:51:50 +03:00
Christos Trochalakis
1b31986abe Remove passenger stanga and switch worker_processes to auto 2014-09-26 11:05:49 +03:00
Christos Trochalakis
80cda88b41 Drop nginx-naxsi packages
Removing everything naxsi related from debian/

We have decided to remove the nginx-naxsi packages before jessie is
freezed.

Packaging naxsi is not trivial and, unfortunately, none of the
maintainers uses it. That's the reason nginx-naxsi is not in a good
shape and we are not feeling comfortable to release and support it.
2014-09-18 12:46:10 +03:00
Christos Trochalakis
2774152526 Sync fastcgi configuration files with upstream nginx, closes #718639
A NEWS entry will follow with more information.

Since we are also changing whitespace, it make more sense to view the
log with -w (--ignore-all-space) parameter.
2014-08-28 15:55:47 +03:00
Christos Trochalakis
ce2293e11a Sync koi-utf,kow-win,scgi_params,uwsgi_params with upstream
A NEWS entry will follow with more information.

Since we are also changing whitespace, it make more sense to view the
log with -w (--ignore-all-space) parameter.
2014-08-28 15:55:42 +03:00
Christos Trochalakis
56f5ab3b7d Upgrade to the latest mime.types
Notice that now nginx uses "application/javascript" for js
files. The `gzip_types` proposed directive has been updated to reflect
that.
2014-08-27 17:04:31 +03:00
Christos Trochalakis
fa8ea785db Pass X-Forwarded-Proto header when proxying
X-Forwarded-Proto header is a de facto standard for identifying the
originating protocol of an HTTP request.
2013-12-24 22:01:14 +02:00
Christos Trochalakis
7eccf8306a Pass the full HTTP host header in proxy_params, #733016
Previously the server port was stripped from the original Host header.
Using the original header as-is by default makes more sense.
2013-12-24 21:47:07 +02:00
Michael Lustfield
282e135c14 Fixed up ssl_ciphers for redundancy and compatibility. 2013-11-24 21:18:39 -06:00
Michael Lustfield
fdf68f0516 Changed ssl_protocols and ssl_ciphers. 2013-11-24 15:01:43 -06:00
Christos Trochalakis
e7a2c3a21f Fix #724232, handle missing files correctly 2013-09-23 11:22:34 +03:00
Michael Lustfield
d7223b1e27 Removed /doc/ from default config. 2013-07-17 07:06:11 +00:00
Cyril Lavier
96a15a1302 Fixed #712989 2013-06-21 17:34:14 +02:00
Cyril Lavier
54d196673a An actual clean fix for #707291 2013-06-05 10:18:36 +02:00
Cyril Lavier
8be7c376ce First try on fixing bug #707291 2013-05-14 20:12:03 +02:00
Kartik Mistry
fb0a5ae14e Fixed typo for ipv6only=on in conf 2013-05-13 08:37:53 +05:30
Cyril Lavier
fa4edd9301 Switch naxsi-ui DB engine from MySQL to SQLite (fixes #699678). 2013-04-29 13:17:11 +02:00