server { listen 443 ssl; listen [::]:443 ssl; server_name {{ external_host }}; ssl_certificate /etc/letsencrypt/live/{{ external_host }}/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/{{ external_host }}/privkey.pem; ssl_trusted_certificate /etc/letsencrypt/live/{{ external_host }}/fullchain.pem; include /etc/nginx/config/tls.conf; include /etc/nginx/config/local.conf; location / { proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto https; proxy_set_header X-Forwarded-Host $http_host; proxy_set_header Host $http_host; proxy_max_temp_file_size 0; proxy_pass http://{{ internal_url }}; proxy_redirect http:// https://; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection $connection_upgrade; } }