---
infra::role: base
+infra::additional_classes:
+ - infra::profile::apache
+ - apache::mod::headers
+
+infra::profile::apache::pp_vhosts:
+ jenkins:
+ docroot: '/srv'
+ servername: 'brauhaus.pixelpark.com'
+ cert_servername: 'wildcard.pixelpark.net'
+ cert_customer: 'pixelpark'
+ ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
+ ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
+ ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
+ proxy_preserve_host: true
+ allow_encoded_slashes: nodecode
+ proxy_pass:
+ - path: /
+ url: 'http://127.0.0.1:8080/'
+ keywords:
+ - 'nocanon'
+ directories:
+ # Root Directory
+ - provider: directory
+ path: '/srv'
+ options:
+ - FollowSymLinks
+ - MultiViews
+ allow_override:
+ - None
+ rewrites:
+ - comment: 'Alles auf https umleiten.'
+ rewrite_cond:
+ - '%%{ich-trickse}{HTTPS} !=on'
+ rewrite_rule:
+ - ^(.*)$ https://%{literal("%")}{HTTP_HOST}$1 [R=301,L]
+ request_headers_ssl:
+ - 'set X-Forwarded-Proto "https"'