Maksim Pechnikov
2e8a236cef
fix invalidates media url's
il y a 4 ans
normandy
122328b93a
Update pleroma.nginx to support TLSv1.3
Based on SSL config from https://ssl-config.mozilla.org/
il y a 4 ans
Maksim
376147fb82
Apply suggestion to installation/nginx-cache-purge.sh.example
il y a 4 ans
Maksim Pechnikov
b5b9d161cd
update purge script
il y a 4 ans
Maksim Pechnikov
3f8d68bdf3
added example cache purge script
il y a 4 ans
Alexander Strizhakov
3c42caa85c
apache chain issue fix
il y a 4 ans
Mark Felder
e04e16bbc0
Do not strip Cache-Control headers from media. Trust the Pleroma backend.
il y a 4 ans
Mark Felder
05da5f5cca
Update Copyrights
il y a 4 ans
Haelwenn (lanodan) Monnier
effb4a3d48
init.d/pleroma: Add option to attach an elixir console
il y a 4 ans
minibikini
f9380289eb
Add `remote_ip` plug
il y a 4 ans
feld
df3feb9412
Make it obvious how to support dual stack for MongooseIM
il y a 4 ans
kPherox
99b4847da3
Fix missing changes in pleroma/pleroma!1197
il y a 4 ans
rinpatch
997e766929
Remove sudo in the nginx config command example
il y a 5 ans
rinpatch
c013d3f3c8
Fix the webroot method in the nginx config
il y a 5 ans
rinpatch
ddf5e6254a
Fix nginx webroot method config
il y a 5 ans
feld
abedcca349
Sample Mongoose IM config.
Change domain, ensure paths to PEM files are correct, and this is good to go.
il y a 5 ans
feld
abc15b6dcc
Improve Varnish config. We set sane headers from the backend now.
il y a 5 ans
Alfie Pates
356c047759
explicitly set reverse proxy upstream to IPv4
since Pleroma.Web.Endpoint binds on IPv4 only and `localhost.` resolves to
[::0] on some systems
fixes #930 .
il y a 5 ans
Dominik V. Salonen
498c96d458
Add supervisord configuration
il y a 5 ans
Haelwenn (lanodan) Monnier
378b964d8e
installation/download-mastofe-build.sh: Add copyright header
[ci skip]
il y a 5 ans
Haelwenn (lanodan) Monnier
b421dd3dd2
installation/download-mastofe-build.sh: Add mastofe CI-artifacts download
[ci skip]
il y a 5 ans
Horsemans
10a9682596
ssl_trusted_certificate should point to chain.pem if we're demonstrating LetsEncrypt: https://community.letsencrypt.org/t/howto-ocsp-stapling-for-nginx/13611/5
il y a 5 ans
Kenneth Zhao
e1bdaaa3fe
need to put back ipv4 listen instruct
il y a 5 ans
PEA
d3a6c065a4
Add ipv6 handling to pleroma.nginx
Replaces `listen 80` with `listen [::]:80`, same with 443
il y a 5 ans
faried nawaz
c75e643a72
apache config: add instructions for mediaproxy.
il y a 5 ans
shibayashi
d1752a81a8
Update service files of OpenRC and systemd to new recommended paths
il y a 5 ans
shibayashi
1d8b578bb7
Recommend the acme-challenge path that is used in the installation guides
il y a 5 ans
shibayashi
e868cfe619
Add /media to Caddy cache
il y a 5 ans
vaartis
9e43a28bc3
Update the openrc service's retry with the correct format
il y a 5 ans
shibayashi
2a818a3e77
Add comments and change default path of the Mix binary.
il y a 5 ans
Mark Felder
cc3a83a730
Fix nginx caching issues
Nginx is currently not caching data because proxy_buffering needs to be
enabled for caching to work at all, and we are receiving a Cache-Control
header from Pleroma that states "max-age=0, private, must-revalidate"
Even disregarding the Cache-Control header that should actually be set
to "public, max-age=1209600" as defined in the reverse_proxy code, we
don't want to obey this header at all as it overrides our Nginx caching
rules.
il y a 5 ans
Mark Felder
efaa41fad2
Consistent intentation
il y a 5 ans
Mark Felder
fda942c329
Cache partial objects for 10 minutes
This enables caching/streaming of chunked responses
il y a 5 ans
Mark Felder
ce224ba5f0
Streaming is enabled by default
Support more filetypes for caching static media
il y a 5 ans
shibayashi
64035201b5
Security/Drops the sysadmin privilege from the daemon
il y a 5 ans
scarlett
4b40e4188c
Simplify the NetBSD rc script.
il y a 5 ans
scarlett
9d3eda1959
Add an rc.d script for NetBSD.
il y a 5 ans
nonlinear
75f2177d5b
Update/add OpenBSD config files
il y a 5 ans
nonlinear
04513a13e0
Added init file for OpenBSD
il y a 5 ans
Mark Felder
d56772c813
proxy buffering still needs to be off
il y a 5 ans
Mark Felder
48c4f88ffd
Update proxy config to improve behavior and allow compatibility with Safari on MacOS and iOS
il y a 5 ans
href
97b00d366f
reverse_proxy: more headers
il y a 5 ans
shibayashi
124a9bb7a5
Add MIX_ENV=prod
il y a 5 ans
William Pitcock
e4bd5a6950
example configs: kill STS/CT headers
il y a 5 ans
William Pitcock
057a9017b3
example configs: remove obsolete CSP configuration
il y a 5 ans
William Pitcock
fd918863aa
nginx example config: remove CORS headers, now managed by CORSPlug.
il y a 5 ans
Hakaba Hitoyo
3ea4f9ac8d
Remove Access-Control-Allow-Origin
il y a 5 ans
shibayashi
800d233631
Use example.tld so a single search and replace works
il y a 5 ans
shibayashi
941f9a888c
Update instructions
il y a 5 ans
shibayashi
732d3fce73
Use the same example domain in all config examples
il y a 5 ans