diff options
| author | Joshua Hull <josh@fireflop.com> | 2023-01-15 10:49:21 +0100 | 
|---|---|---|
| committer | Emil Renner Berthing <esmil@labitat.dk> | 2023-01-27 00:32:09 +0100 | 
| commit | 6bbdee9dc9333e94d13e8653ee3bb5626aa754b5 (patch) | |
| tree | afd3e802bbe3968ef6c526416c8cb27d63231ad4 /roles/debian/defaults | |
| parent | 09df394737c4a91a5a44909e29abeff8e1927ecc (diff) | |
| download | labitat-ansible-6bbdee9dc9333e94d13e8653ee3bb5626aa754b5.tar.gz labitat-ansible-6bbdee9dc9333e94d13e8653ee3bb5626aa754b5.tar.xz labitat-ansible-6bbdee9dc9333e94d13e8653ee3bb5626aa754b5.zip | |
nginx: add common role for nginx
esmil:
- disable access log and log errors to syslog (journal really)
  use journalctl -u nginx to see the errors
- hoist some configuration values into ansible variables
- add tags and use a handler to reload nginx on configuration changes
- make nginx do its DNS queries against our local resolved
  this enables nginx to use DNSSEC and DoT
- don't start nginx before the network is up. if it can't do
  dns lookups ssl_stapling will be ignored
Diffstat (limited to 'roles/debian/defaults')
0 files changed, 0 insertions, 0 deletions
