upstream _strfry { <% @upstream_hosts.each do |host| %> server <%= host %>:<%= @upstream_port %>; <% end %> } server { listen <%= "#{node['openresty']['listen_ip']}:" if node['openresty']['listen_ip'] %>443 ssl http2; listen [::]:443 ssl http2; server_name <%= @domain %>; access_log "/var/log/nginx/<%= @domain %>.access.log"; error_log "/var/log/nginx/<%= @domain %>.error.log"; ssl_certificate <%= @ssl_cert %>; ssl_certificate_key <%= @ssl_key %>; location / { proxy_set_header Host $host; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto https; proxy_set_header X-Real-IP $remote_addr; proxy_pass http://_strfry; proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "upgrade"; } }