Commit Graph

83 Commits

Author SHA1 Message Date
Tommy
93f2f91f96 Fix SC2046
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-26 07:07:43 -07:00
Tommy
eb39ad2f39 Use realpath for interoperability 2024-07-26 07:04:05 -07:00
Tommy
faa35bf11b Remove OCSP stapling
https://letsencrypt.org/2024/07/23/replacing-ocsp-with-crls.html
2024-07-26 06:52:58 -07:00
Tommy
6e6b7c3c16 Typo Fix
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-26 06:41:36 -07:00
Tommy
95357339af Add set -u
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-20 18:19:34 -07:00
Tommy
c2e70d17ee Add set -e
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-05 08:38:51 -07:00
Tommy
b6e13fadb8 Remove restorecon on certbot certonly 2024-07-03 19:09:34 -07:00
Tommy
07f2cb7a02 Certbot OCSP fetcher changes have been upstreamed
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-30 12:46:02 -07:00
Tommy
5a3ac8cbd7 Miniflux needs form-action 'self'
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-30 12:37:44 -07:00
Tommy
ab5fb14232 SELinux support for certbot-ocsp-fetcher
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-29 17:53:27 -07:00
Tommy
b5a6386526 Reorganize Miniflux CSP
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-29 16:54:37 -07:00
Tommy
e48e0a1096 Add Miniflux 2024-06-29 14:59:18 -07:00
Tommy
616669f832 Put reuseport into the default site config 2024-06-29 14:56:28 -07:00
Tommy
dcd36c9051 Add sample configuration 2024-06-26 20:58:06 -07:00
Tommy
c09190f5be Typo Fix 2024-06-26 14:41:06 -07:00
Tommy
7cfbc5abb8 Ensure correct permissions 2024-06-26 14:25:56 -07:00
Tommy
183e414e91 Add cross-origin-security to setup.sh
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-26 12:26:22 -07:00
Tommy
08ce46c69e Fix package name
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-26 11:19:13 -07:00
Tommy
40089938a5 Use nginx-core instead of nginx
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-26 11:18:15 -07:00
Tommy
1add9de088 Add missing execute permission 2024-06-26 11:17:23 -07:00
Tommy
23e6455d38 POSIX compliance
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-25 23:37:55 -07:00
Tommy
8aa5abae84 Add quotation marks 2024-06-25 15:17:43 -07:00
Tommy
4f1b4b6dcb Restrict CORP 2024-06-25 15:15:59 -07:00
Tommy
03149c183c Split out cross origin security headers 2024-06-25 15:10:02 -07:00
Tommy
e64e242e42 Always use 'always' 2024-06-25 14:57:55 -07:00
Tommy
687dfae6b2 Add brackets for consistency
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 23:54:23 -07:00
Tommy
b8c460073a Make /var/lib/nginx optional
So it's easier to reuse this in distros like Ubuntu

Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 23:47:16 -07:00
Tommy
9dc93e73fe Rotate key on renewal
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 23:10:21 -07:00
Tommy
a09a2abc7b Better consistency
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 21:24:38 -07:00
Tommy
0b31a1df0e Add shellcheck
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 21:18:45 -07:00
Tommy
9b76062641 Automate as much as possible
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 21:16:18 -07:00
Tommy
1bf7d1835f Initial file upload
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-24 10:21:29 -07:00
Tommy
5f01f742fa Initial commit 2024-06-22 20:19:00 -07:00