non-root docker support
[vnfsdk/refrepo.git] / vnfmarket-be / deployment / docker / docker-refrepo / src / main / docker / nginx.conf
1 daemon off;
2
3 #pid /run/nginx.pid;
4
5 events {
6     worker_connections 500;
7     # multi_accept on;
8 }
9 http {
10
11     ##
12     # Basic Settings
13     ##
14
15     sendfile on;
16     tcp_nopush on;
17     tcp_nodelay on;
18     keepalive_timeout 65;
19     types_hash_max_size 2048;
20
21         #Comment or disable the access_log once tested to avoid runtime logs
22 #        access_log            /var/log/nginx/access.log format gzip;
23         access_log            off;
24         error_log            /var/log/nginx/error.log;
25
26     server {
27          listen *:8703 ssl;
28         server_name
29         ssl on;
30         ssl_certificate           /etc/nginx/ssl/cert.crt;
31         ssl_certificate_key       /etc/nginx/ssl/cert.key;
32         ssl_session_cache  builtin:1000  shared:SSL:80m;
33         ssl_protocols  TLSv1 TLSv1.1 TLSv1.2;
34         ssl_ciphers ECDH+AESGCM:ECDH+AES256:ECDH+AES128:DH+3DES:!ADH:!AECDH:!MD5;
35         ssl_prefer_server_ciphers on;
36          ssl_session_timeout 10m;
37         keepalive_timeout   70;
38
39         location / {
40                   proxy_set_header        Host $host;
41                   proxy_set_header        X-Real-IP $remote_addr;
42                   proxy_set_header        X-Forwarded-For $proxy_add_x_forwarded_for;
43                   proxy_set_header        X-Forwarded-Proto $scheme;
44
45                   proxy_pass          http://localhost:8702;
46                   proxy_read_timeout  90;
47                   proxy_redirect      off;
48         }
49     }
50 }