From 21a85aea62dea834d0943e4c967690df9b3ed2cc Mon Sep 17 00:00:00 2001 From: Dmitry Voronin Date: Sun, 5 Jan 2025 09:05:34 +0300 Subject: [PATCH] Home: Move nginx to ipv6. --- host/x86_64-linux/home/nginx/Change.nix | 2 +- host/x86_64-linux/home/nginx/Cups.nix | 2 +- host/x86_64-linux/home/nginx/Deluge.nix | 2 +- host/x86_64-linux/home/nginx/Forgejo.nix | 4 ++-- host/x86_64-linux/home/nginx/Hass.nix | 2 +- host/x86_64-linux/home/nginx/Invidious.nix | 2 +- host/x86_64-linux/home/nginx/Jellyfin.nix | 2 +- host/x86_64-linux/home/nginx/Kavita.nix | 2 +- host/x86_64-linux/home/nginx/OnlyOffice.nix | 2 +- host/x86_64-linux/home/nginx/Paperless.nix | 2 +- host/x86_64-linux/home/nginx/SearX.nix | 2 +- host/x86_64-linux/home/nginx/Sync.nix | 2 +- host/x86_64-linux/home/nginx/UptimeKuma.nix | 2 +- host/x86_64-linux/home/nginx/Valutwarden.nix | 2 +- 14 files changed, 15 insertions(+), 15 deletions(-) diff --git a/host/x86_64-linux/home/nginx/Change.nix b/host/x86_64-linux/home/nginx/Change.nix index f819e3e..fa12d64 100644 --- a/host/x86_64-linux/home/nginx/Change.nix +++ b/host/x86_64-linux/home/nginx/Change.nix @@ -8,7 +8,7 @@ allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:5001$request_uri; + proxy_pass http://[::1]:5001$request_uri; add_header Referrer-Policy 'origin'; } diff --git a/host/x86_64-linux/home/nginx/Cups.nix b/host/x86_64-linux/home/nginx/Cups.nix index 97474f0..aba95f0 100644 --- a/host/x86_64-linux/home/nginx/Cups.nix +++ b/host/x86_64-linux/home/nginx/Cups.nix @@ -8,7 +8,7 @@ allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:631$request_uri; + proxy_pass http://[::1]:631$request_uri; proxy_set_header Host "127.0.0.1"; proxy_set_header X-Real-IP $remote_addr; diff --git a/host/x86_64-linux/home/nginx/Deluge.nix b/host/x86_64-linux/home/nginx/Deluge.nix index 4978671..8e501be 100644 --- a/host/x86_64-linux/home/nginx/Deluge.nix +++ b/host/x86_64-linux/home/nginx/Deluge.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:8112$request_uri; + proxy_pass http://[::1]:8112$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/Forgejo.nix b/host/x86_64-linux/home/nginx/Forgejo.nix index 0300b13..a291360 100644 --- a/host/x86_64-linux/home/nginx/Forgejo.nix +++ b/host/x86_64-linux/home/nginx/Forgejo.nix @@ -7,11 +7,11 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:3000$request_uri; + proxy_pass http://[::1]:3000$request_uri; } location / { - proxy_pass http://127.0.0.1:3000$request_uri; + proxy_pass http://[::1]:3000$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/Hass.nix b/host/x86_64-linux/home/nginx/Hass.nix index 8e6b2e2..37c1aa7 100644 --- a/host/x86_64-linux/home/nginx/Hass.nix +++ b/host/x86_64-linux/home/nginx/Hass.nix @@ -14,7 +14,7 @@ proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "upgrade"; - proxy_pass http://127.0.0.1:8123$request_uri; + proxy_pass http://[::1]:8123$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/Invidious.nix b/host/x86_64-linux/home/nginx/Invidious.nix index 6c66ce5..9cafe67 100644 --- a/host/x86_64-linux/home/nginx/Invidious.nix +++ b/host/x86_64-linux/home/nginx/Invidious.nix @@ -8,7 +8,7 @@ allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:3001$request_uri; + proxy_pass http://[::1]:3001$request_uri; proxy_set_header X-Forwarded-For $remote_addr; proxy_set_header Host $host; diff --git a/host/x86_64-linux/home/nginx/Jellyfin.nix b/host/x86_64-linux/home/nginx/Jellyfin.nix index a7e6140..d80b085 100644 --- a/host/x86_64-linux/home/nginx/Jellyfin.nix +++ b/host/x86_64-linux/home/nginx/Jellyfin.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:8096$request_uri; + proxy_pass http://[::1]:8096$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/Kavita.nix b/host/x86_64-linux/home/nginx/Kavita.nix index a68bc9c..15c5a00 100644 --- a/host/x86_64-linux/home/nginx/Kavita.nix +++ b/host/x86_64-linux/home/nginx/Kavita.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:5000$request_uri; + proxy_pass http://[::1]:5000$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/OnlyOffice.nix b/host/x86_64-linux/home/nginx/OnlyOffice.nix index 9d07345..ff52861 100644 --- a/host/x86_64-linux/home/nginx/OnlyOffice.nix +++ b/host/x86_64-linux/home/nginx/OnlyOffice.nix @@ -3,7 +3,7 @@ "office.voronind.com" = { locations."/".extraConfig = lib.mkForce '' add_header X-Forwarded-Proto https; - proxy_pass http://127.0.0.1:8000$request_uri; + proxy_pass http://[::1]:8000$request_uri; ''; extraConfig = '' diff --git a/host/x86_64-linux/home/nginx/Paperless.nix b/host/x86_64-linux/home/nginx/Paperless.nix index 8d0db59..477ceab 100644 --- a/host/x86_64-linux/home/nginx/Paperless.nix +++ b/host/x86_64-linux/home/nginx/Paperless.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:28981$request_uri; + proxy_pass http://[::1]:28981$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/SearX.nix b/host/x86_64-linux/home/nginx/SearX.nix index 5fa9306..0a6c325 100644 --- a/host/x86_64-linux/home/nginx/SearX.nix +++ b/host/x86_64-linux/home/nginx/SearX.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:34972$request_uri; + proxy_pass http://[::1]:34972$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/Sync.nix b/host/x86_64-linux/home/nginx/Sync.nix index 37b8406..fa5c54e 100644 --- a/host/x86_64-linux/home/nginx/Sync.nix +++ b/host/x86_64-linux/home/nginx/Sync.nix @@ -11,7 +11,7 @@ proxy_set_header Host "localhost"; proxy_set_header X-Forwarded-Host "localhost"; - proxy_pass http://127.0.0.1:8384$request_uri; + proxy_pass http://[::1]:8384$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/UptimeKuma.nix b/host/x86_64-linux/home/nginx/UptimeKuma.nix index a560658..677838a 100644 --- a/host/x86_64-linux/home/nginx/UptimeKuma.nix +++ b/host/x86_64-linux/home/nginx/UptimeKuma.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:64901$request_uri; + proxy_pass http://[::1]:64901$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem; diff --git a/host/x86_64-linux/home/nginx/Valutwarden.nix b/host/x86_64-linux/home/nginx/Valutwarden.nix index 6527b6d..5feb246 100644 --- a/host/x86_64-linux/home/nginx/Valutwarden.nix +++ b/host/x86_64-linux/home/nginx/Valutwarden.nix @@ -7,7 +7,7 @@ allow 10.0.0.0/8; allow fd09:8d46:b26::/48; deny all; - proxy_pass http://127.0.0.1:8001$request_uri; + proxy_pass http://[::1]:8001$request_uri; } ssl_certificate /etc/letsencrypt/live/voronind.com/fullchain.pem;