Jump to content

riopgtmn

Members
  • Posts

    30
  • Joined

  • Last visited

Posts posted by riopgtmn

  1. Hi guys, I have a seemingly odd problem. 

     

    So, I installed the docker and went through the process following the guide (synlabs) 

     

    I can't get the default homepage of nginx when on my lan. 

     

    I do have the it set to 81 and 443 - I did forward the ports, all I'm trying to do for now is to get ombi remotely accessible. 

     

    Here is my default config 

     

    upstream backend {
    	server 192.168.1.225:19999;
    	keepalive 64;
    }
    
    server {
    	listen 443 ssl default_server;
    	listen 80 default_server;
    	root /config/www;
    	index index.html index.htm index.php;
    
    	server_name _;
    
    	ssl_certificate /config/keys/letsencrypt/fullchain.pem;
    	ssl_certificate_key /config/keys/letsencrypt/privkey.pem;
    	ssl_dhparam /config/nginx/dhparams.pem;
    	ssl_ciphers 'ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-DSS-AES128-GCM-SHA256:kEDH+AESGCM:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA:ECDHE-ECDSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-DSS-AES128-SHA256:DHE-RSA-AES256-SHA256:DHE-DSS-AES256-SHA:DHE-RSA-AES256-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:AES:CAMELLIA:DES-CBC3-SHA:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!PSK:!aECDH:!EDH-DSS-DES-CBC3-SHA:!EDH-RSA-DES-CBC3-SHA:!KRB5-DES-CBC3-SHA';
    	ssl_prefer_server_ciphers on;
    
    	client_max_body_size 0;
    
    	location = / {
    		return 301 /ombi;
    	}
    
    	location /ombi {
    		include /config/nginx/proxy.conf;
    		proxy_pass http://192.168.1.225:3579/ombi;
    	}
    
    }

    The remote access works, at fakesub.duckdns.org/ombi/login - However it's showing as not secure. 

     

    What I had to do was set the base url inside ombi as /ombi 

     

     

     

  2. Hi Guys, 


    This is my ngix/letsencrypt site-conf default. I am trying to get Ombi remotely accessible using letsencrypt certificate. I have duckdns working properly with the default ngix page. I would like to craft a custom page with a link to the Ombi service (running locally at 192.168.1.225) and working fine

     

    Here is the modified config; Any tweaks would be greatly appreciated as well

     

    Thanks in advnace! 

    upstream backend {
        server 192.168.1.255:19999;
        keepalive 64;
    }
    server {
        listen 443 ssl default_server;
        listen 80 default_server;
        root /config/www;
        index index.html index.htm index.php;
        server_name _;
        ssl_certificate /config/keys/letsencrypt/fullchain.pem;
        ssl_certificate_key /config/keys/letsencrypt/privkey.pem;
        ssl_dhparam /config/nginx/dhparams.pem;
        ssl_ciphers 'ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-DSS-AES128-GCM-SHA256:kEDH+AESGCM:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA:ECDHE-ECDSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-DSS-AES128-SHA256:DHE-RSA-AES256-SHA256:DHE-DSS-AES256-SHA:DHE-RSA-AES256-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:AES:CAMELLIA:DES-CBC3-SHA:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!PSK:!aECDH:!EDH-DSS-DES-CBC3-SHA:!EDH-RSA-DES-CBC3-SHA:!KRB5-DES-CBC3-SHA';
        ssl_prefer_server_ciphers on;
        client_max_body_size 0;
        
        # PlexRequest
        location /ombi {
            # plex media request
            proxy_pass http://192.168.2.255:3579;
        }
        
        location ~ /netdata/(?<ndpath>.*) {
            proxy_set_header X-Forwarded-Host $host;
            proxy_set_header X-Forwarded-Server $host;
            proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
            proxy_pass http://backend/$ndpath$is_args$args;
            proxy_http_version 1.1;
            proxy_pass_request_headers on;
            proxy_set_header Connection "keep-alive";
            proxy_store off;
        }
    }

     

×
×
  • Create New...