87 lines
2.7 KiB
Plaintext
87 lines
2.7 KiB
Plaintext
|
## Version 2023/03/27
|
||
|
# make sure that your vaultwarden container is named vaultwarden
|
||
|
# make sure that vaultwarden is set to work with the base url /vaultwarden/
|
||
|
## Environmental Variable DOMAIN=https://<DOMAIN>/vaultwarden must be set in vaultwarden container including subfolder.
|
||
|
## This is using ports 80 and 3012
|
||
|
|
||
|
location /vaultwarden {
|
||
|
return 301 $scheme://$host/vaultwarden/;
|
||
|
}
|
||
|
|
||
|
location ^~ /vaultwarden/ {
|
||
|
# enable the next two lines for http auth
|
||
|
#auth_basic "Restricted";
|
||
|
#auth_basic_user_file /config/nginx/.htpasswd;
|
||
|
|
||
|
# enable for ldap auth (requires ldap-server.conf in the server block)
|
||
|
#include /config/nginx/ldap-location.conf;
|
||
|
|
||
|
# enable for Authelia (requires authelia-server.conf in the server block)
|
||
|
#include /config/nginx/authelia-location.conf;
|
||
|
|
||
|
# enable for Authentik (requires authentik-server.conf in the server block)
|
||
|
#include /config/nginx/authentik-location.conf;
|
||
|
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ ^(/vaultwarden)?/admin {
|
||
|
# enable the next two lines for http auth
|
||
|
#auth_basic "Restricted";
|
||
|
#auth_basic_user_file /config/nginx/.htpasswd;
|
||
|
|
||
|
# enable for ldap auth (requires ldap-server.conf in the server block)
|
||
|
#include /config/nginx/ldap-location.conf;
|
||
|
|
||
|
# enable for Authelia (requires authelia-server.conf in the server block)
|
||
|
#include /config/nginx/authelia-location.conf;
|
||
|
|
||
|
# enable for Authentik (requires authentik-server.conf in the server block)
|
||
|
#include /config/nginx/authentik-location.conf;
|
||
|
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ (/vaultwarden)?/api {
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ (/vaultwarden)?/notifications/hub {
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 3012;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|
||
|
location ~ (/vaultwarden)?/notifications/hub/negotiate {
|
||
|
include /config/nginx/proxy.conf;
|
||
|
include /config/nginx/resolver.conf;
|
||
|
set $upstream_app vaultwarden;
|
||
|
set $upstream_port 80;
|
||
|
set $upstream_proto http;
|
||
|
proxy_pass $upstream_proto://$upstream_app:$upstream_port;
|
||
|
|
||
|
}
|
||
|
|