summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorElizabeth Hunt <elizabeth.hunt@simponic.xyz>2024-10-17 23:57:35 -0400
committerElizabeth Hunt <elizabeth.hunt@simponic.xyz>2024-10-18 00:19:15 -0400
commit77f69fc2278cbc621b841a2db5eeb192245697cc (patch)
tree90afa1d8f9861791625b77d9dda56a2aef56ce57
parentb8a9edb9740ceaebefd76b27cc17a2e07e01e8a5 (diff)
downloadoldinfra-77f69fc2278cbc621b841a2db5eeb192245697cc.tar.gz
oldinfra-77f69fc2278cbc621b841a2db5eeb192245697cc.zip
fix proto tcp failure
-rw-r--r--roles/nameservers/templates/db.simponic.xyz.j21
-rw-r--r--roles/webservers/files/levi/https.ntfy.simponic.hatecomputers.club.conf4
-rw-r--r--roles/webservers/files/levi/https.rainrain.xyz.servconf4
3 files changed, 6 insertions, 3 deletions
diff --git a/roles/nameservers/templates/db.simponic.xyz.j2 b/roles/nameservers/templates/db.simponic.xyz.j2
index d4f22e3..cf8dbd9 100644
--- a/roles/nameservers/templates/db.simponic.xyz.j2
+++ b/roles/nameservers/templates/db.simponic.xyz.j2
@@ -45,6 +45,7 @@ lab.simponic.xyz. 1 IN CNAME simponic.tplinkdns.com.
simponic.xyz. 1 IN MX 10 mail.simponic.xyz.
;; TXT Records
+_atproto.pressurehooker.simponic.xyz. 1 IN TXT "did=did:plc:6frn2g6bbih6s2dqqod6ahks"
mail._domainkey.simponic.xyz. 1 IN TXT ( "v=DKIM1; h=sha256; k=rsa; "
"p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2ktysbZaewsAo1Uk+FfLvVeL9ii6ejTDxxYE1RoGTxFDulFYXdpvO+MErDq62IvaQ6E4TYTc0RULoqp3BjuVVG6IG85SmhWME9XYSrxLm1pq7yRN1s1b6pBqNC6+yiyxwSjThS7RzH3sxwBL7R8AHRuEV+2UKsvT2wOCyRXAth+lrB7t9S9niWNOB3lvDqe0/oPf9JDrKjpuO6"
"lKZ3nglGzPfdJEpfLyXBP4l5UlxqWYUIrCzqHY9bNmyPepb1CJT97AD5jGGngCrnMCmllAdyOKa1ds5uoPjjGaLO8bOoBWXQuacn++hDsdyQ78Y673T2935CN/uGgrLBs9UiA0BQIDAQAB" ) ; ----- DKIM key mail for simponic.xyz
diff --git a/roles/webservers/files/levi/https.ntfy.simponic.hatecomputers.club.conf b/roles/webservers/files/levi/https.ntfy.simponic.hatecomputers.club.conf
index d532ee1..8c707b4 100644
--- a/roles/webservers/files/levi/https.ntfy.simponic.hatecomputers.club.conf
+++ b/roles/webservers/files/levi/https.ntfy.simponic.hatecomputers.club.conf
@@ -1,5 +1,7 @@
server {
- listen 4443 ssl;
+ listen 4443 ssl proxy_protocol;
+ real_ip_header proxy_protocol;
+ set_real_ip_from 127.0.0.1;
allow 10.0.0.0/8;
allow 100.64.0.0/12;
diff --git a/roles/webservers/files/levi/https.rainrain.xyz.servconf b/roles/webservers/files/levi/https.rainrain.xyz.servconf
index 3b9dc5c..42b2535 100644
--- a/roles/webservers/files/levi/https.rainrain.xyz.servconf
+++ b/roles/webservers/files/levi/https.rainrain.xyz.servconf
@@ -1,8 +1,7 @@
stream {
map $ssl_preread_server_name $name {
hostnames;
- .rainrain.xyz rainrainxyz;
- default proxy;
+ .rainrain.xyz rainrainxyz; default proxy;
}
upstream rainrainxyz {
@@ -15,6 +14,7 @@ stream {
server {
listen 443;
proxy_pass $name;
+ proxy_protocol on;
ssl_preread on;
}
}