aboutsummaryrefslogtreecommitdiff
path: root/data/sonarr
diff options
context:
space:
mode:
Diffstat (limited to 'data/sonarr')
-rw-r--r--data/sonarr/sonarr.conf.j236
1 files changed, 36 insertions, 0 deletions
diff --git a/data/sonarr/sonarr.conf.j2 b/data/sonarr/sonarr.conf.j2
new file mode 100644
index 0000000..3d831ba
--- /dev/null
+++ b/data/sonarr/sonarr.conf.j2
@@ -0,0 +1,36 @@
1server {
2 listen 443 ssl;
3 server_name {{ sonarr_server_name }};
4
5 ssl_certificate /etc/letsencrypt/live/chudnick.com/fullchain.pem;
6 ssl_certificate_key /etc/letsencrypt/live/chudnick.com/privkey.pem;
7 add_header Strict-Transport-Security "max-age=31536000" always;
8 ssl_stapling on;
9 ssl_stapling_verify on;
10
11 # Security / XSS Mitigation Headers
12 add_header X-Frame-Options "SAMEORIGIN";
13 add_header X-XSS-Protection "1; mode=block";
14 add_header X-Content-Type-Options "nosniff";
15
16 # authelia
17 include /etc/nginx/snippets/authelia-location.conf;
18
19 location / {
20 #authelia
21 include /etc/nginx/snippets/proxy.conf;
22 include /etc/nginx/snippets/authelia-authrequest.conf;
23
24 proxy_set_header Upgrade $http_upgrade;
25 proxy_set_header Connection $http_connection;
26 proxy_pass http://127.0.0.1:{{ sonarr_external_port }}/;
27 }
28
29}
30
31server {
32 listen 80;
33 listen [::]:80;
34 server_name {{ sonarr_server_name }};
35 return 301 https://$host$request_uri;
36}