forked from coop-cloud/nextcloud
		
	Compare commits
	
		
			1 Commits
		
	
	
		
			9.1.2+29.0
			...
			update-ngi
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
| 1ac43b6be6 | 
@ -10,11 +10,7 @@ events {
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
http {
 | 
			
		||||
    include       /etc/nginx/mime.types;
 | 
			
		||||
    # See https://github.com/nextcloud/forms/issues/1838#issuecomment-1860497200
 | 
			
		||||
    types {
 | 
			
		||||
        application/javascript js mjs;
 | 
			
		||||
    }
 | 
			
		||||
    include mime.types;
 | 
			
		||||
    default_type  application/octet-stream;
 | 
			
		||||
 | 
			
		||||
    log_format  main  '$remote_addr - $remote_user [$time_local] "$request" '
 | 
			
		||||
@ -26,8 +22,17 @@ http {
 | 
			
		||||
    sendfile        on;
 | 
			
		||||
    #tcp_nopush     on;
 | 
			
		||||
 | 
			
		||||
    # Prevent nginx HTTP Server Detection
 | 
			
		||||
    server_tokens   off;
 | 
			
		||||
 | 
			
		||||
    keepalive_timeout  65;
 | 
			
		||||
 | 
			
		||||
    # Set the `immutable` cache control options only for assets with a cache busting `v` argument
 | 
			
		||||
    map $arg_v $asset_immutable {
 | 
			
		||||
        "" "";
 | 
			
		||||
    default "immutable";
 | 
			
		||||
    }
 | 
			
		||||
 | 
			
		||||
    #gzip  on;
 | 
			
		||||
 | 
			
		||||
    upstream php-handler {
 | 
			
		||||
@ -45,18 +50,23 @@ http {
 | 
			
		||||
        # could take several months.
 | 
			
		||||
        #add_header Strict-Transport-Security "max-age=15768000; includeSubDomains; preload;" always;
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
        # set max upload size
 | 
			
		||||
        # set max upload size and increase upload timeout:
 | 
			
		||||
        client_max_body_size 512M;
 | 
			
		||||
        client_body_timeout 300s;
 | 
			
		||||
        fastcgi_buffers 64 4K;
 | 
			
		||||
 | 
			
		||||
        # The settings allows you to optimize the HTTP2 bandwidth.
 | 
			
		||||
        # See https://blog.cloudflare.com/delivering-http-2-upload-speed-improvements/
 | 
			
		||||
        # for tuning hints
 | 
			
		||||
        client_body_buffer_size 512k;
 | 
			
		||||
 | 
			
		||||
        # Enable gzip but do not remove ETag headers
 | 
			
		||||
        gzip on;
 | 
			
		||||
        gzip_vary on;
 | 
			
		||||
        gzip_comp_level 4;
 | 
			
		||||
        gzip_min_length 256;
 | 
			
		||||
        gzip_proxied expired no-cache no-store private no_last_modified no_etag auth;
 | 
			
		||||
        gzip_types application/atom+xml application/javascript application/json application/ld+json application/manifest+json application/rss+xml application/vnd.geo+json application/vnd.ms-fontobject application/x-font-ttf application/x-web-app-manifest+json application/xhtml+xml application/xml font/opentype image/bmp image/svg+xml image/x-icon text/cache-manifest text/css text/plain text/vcard text/vnd.rim.location.xloc text/vtt text/x-component text/x-cross-domain-policy;
 | 
			
		||||
        gzip_types application/atom+xml text/javascript application/javascript application/json application/ld+json application/manifest+json application/rss+xml application/vnd.geo+json application/vnd.ms-fontobject application/wasm application/x-font-ttf application/x-web-app-manifest+json application/xhtml+xml application/xml font/opentype image/bmp image/svg+xml image/x-icon text/cache-manifest text/css text/plain text/vcard text/vnd.rim.location.xloc text/vtt text/x-component text/x-cross-domain-policy;
 | 
			
		||||
 | 
			
		||||
        # Pagespeed is not supported by Nextcloud, so if your server is built
 | 
			
		||||
        # with the `ngx_pagespeed` module, uncomment this line to disable it.
 | 
			
		||||
@ -65,7 +75,6 @@ http {
 | 
			
		||||
        # HTTP response headers borrowed from Nextcloud `.htaccess`
 | 
			
		||||
        add_header Referrer-Policy                      "no-referrer"       always;
 | 
			
		||||
        add_header X-Content-Type-Options               "nosniff"           always;
 | 
			
		||||
        add_header X-Download-Options                   "noopen"            always;
 | 
			
		||||
        add_header X-Permitted-Cross-Domain-Policies    "none"              always;
 | 
			
		||||
        add_header X-Robots-Tag                         "noindex, nofollow" always;
 | 
			
		||||
        add_header X-XSS-Protection                     "1; mode=block"     always;
 | 
			
		||||
@ -155,12 +164,32 @@ http {
 | 
			
		||||
 | 
			
		||||
            fastcgi_intercept_errors on;
 | 
			
		||||
            fastcgi_request_buffering off;
 | 
			
		||||
 | 
			
		||||
            fastcgi_max_temp_file_size 0;
 | 
			
		||||
        }
 | 
			
		||||
 | 
			
		||||
        location ~ \.(?:css|js|svg|gif)$ {
 | 
			
		||||
        # Javascript mimetype fixes for nginx
 | 
			
		||||
        # Note: The block below should be removed, and the js|mjs section should be
 | 
			
		||||
        # added to the block below this one. This is a temporary fix until Nginx 
 | 
			
		||||
        # upstream fixes the js mime-type
 | 
			
		||||
        location ~* \.(?:js|mjs)$ {
 | 
			
		||||
            types { 
 | 
			
		||||
                text/javascript js mjs;
 | 
			
		||||
            } 
 | 
			
		||||
            try_files $uri /index.php$request_uri;
 | 
			
		||||
            expires 6M;         # Cache-Control policy borrowed from `.htaccess`
 | 
			
		||||
            add_header Cache-Control "public, max-age=15778463, $asset_immutable";
 | 
			
		||||
            access_log off;
 | 
			
		||||
        }
 | 
			
		||||
 | 
			
		||||
        # Serve static files
 | 
			
		||||
        location ~ \.(?:css|svg|gif|png|jpg|ico|wasm|tflite|map|ogg|flac)$ {
 | 
			
		||||
            try_files $uri /index.php$request_uri;
 | 
			
		||||
            add_header Cache-Control "public, max-age=15778463, $asset_immutable";
 | 
			
		||||
            access_log off;     # Optional: Don't log access to assets
 | 
			
		||||
 | 
			
		||||
            location ~ \.wasm$ {
 | 
			
		||||
                default_type application/wasm;
 | 
			
		||||
            }
 | 
			
		||||
        }
 | 
			
		||||
 | 
			
		||||
        location ~ \.woff2?$ {
 | 
			
		||||
 | 
			
		||||
		Reference in New Issue
	
	Block a user