NAS 配置 Vaultwarden

2023-01-27  本文已影响0人  游城十代2dai

流程

使用高权限执行以及自启动 端口和环境变量配置图

Nginx 反向代理, 注意证书配置路径


server {  

 listen 443 ssl;

 server_name vaultwarden.zwy.press;

 ## send https request back to DSM

 ssl_certificate cert/vaultwarden.zwy.press.pem;

 ssl_certificate_key cert/vaultwarden.zwy.press.key;

 ssl_protocols TLSv1 TLSv1.1 TLSv1.2;

 ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:HIGH:!aNULL:!MD5:!RC4:!DHE;

 ssl_prefer_server_ciphers on;

 ssl_session_cache shared:SSL:10m;

 ssl_session_timeout 10m;

 client_max_body_size 3000m;

 proxy_set_header Host $host;

 #proxy_set_header  Host $http_host;

 proxy_set_header X-Real-IP $remote_addr;

 proxy_set_header REMOTE-HOST $remote_addr;

 proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;

 proxy_set_header X-Forwarded-Proto $scheme;

 add_header X-Frame-Options SAMEORIGIN;

 access_log off; 

 location / {

 proxy_pass https://localhost:13080/;

 }

}

参考: https://zhuanlan.zhihu.com/p/555479792

上一篇 下一篇

猜你喜欢

热点阅读