From e985824f040aa73da391ebfd0dcdb58b4cfde33b Mon Sep 17 00:00:00 2001 From: Thomas Heller Date: Fri, 31 Aug 2018 14:42:22 +0200 Subject: [PATCH] configured proxy service for jenkins --- .../pixelpark/brauhaus.pixelpark.com.yaml | 37 +++++++++++++++++++ 1 file changed, 37 insertions(+) diff --git a/customer/pixelpark/brauhaus.pixelpark.com.yaml b/customer/pixelpark/brauhaus.pixelpark.com.yaml index 3b0442d3..89fdc145 100644 --- a/customer/pixelpark/brauhaus.pixelpark.com.yaml +++ b/customer/pixelpark/brauhaus.pixelpark.com.yaml @@ -1,2 +1,39 @@ --- infra::role: base +infra::additional_classes: + - infra::profile::apache + - apache::mod::headers + +infra::profile::apache::pp_vhosts: + jenkins: + docroot: '/srv' + servername: 'brauhaus.pixelpark.com' + cert_servername: 'wildcard.pixelpark.net' + cert_customer: 'pixelpark' + ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem' + ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem' + ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem' + proxy_preserve_host: true + allow_encoded_slashes: nodecode + proxy_pass: + - path: / + url: 'http://127.0.0.1:8080/' + keywords: + - 'nocanon' + directories: + # Root Directory + - provider: directory + path: '/srv' + options: + - FollowSymLinks + - MultiViews + allow_override: + - None + rewrites: + - comment: 'Alles auf https umleiten.' + rewrite_cond: + - '%%{ich-trickse}{HTTPS} !=on' + rewrite_rule: + - ^(.*)$ https://%{literal("%")}{HTTP_HOST}$1 [R=301,L] + request_headers_ssl: + - 'set X-Forwarded-Proto "https"' -- 2.39.5