Added configurations for demw1.komreg.net

This commit is contained in:
Maria Haider 2019-04-15 15:39:31 +02:00
parent d21c83e1c4
commit d6fff11b68
Signed by: mariah
GPG key ID: 7414A760CA747E57
3 changed files with 42 additions and 4 deletions

View file

@ -137,3 +137,20 @@ sunet_frontend:
- 443
letsencrypt_server: 'acme-c.sunet.se'
haproxy_imagetag: 'stable'
'demweidas':
site_name: 'demw.eidas.swedenconnect.se'
frontends:
'fe-fre-3.komreg.net':
ips: ['94.176.226.14', '2001:6b0:65:1::14']
'fe-tug-3.komreg.net':
ips: ['94.176.226.15', '2001:6b0:65:1::15']
backends:
default:
'demw1.komreg.net':
ips: ['94.176.224.252']
server_args: 'ssl check verify none'
allow_ports:
- 443
letsencrypt_server: 'acme-c.sunet.se'
haproxy_imagetag: 'stable'

View file

@ -0,0 +1,22 @@
{% extends 'common/haproxy_base.j2' %}
{% from "common/haproxy_macros.j2" import bind_ip_tls, web_security_options, acme_challenge, csp %}
{% block frontend %}
frontend {{ site_name }}
{{ bind_ip_tls(bind_ips, 443, tls_certificate_bundle) }}
stats enable
timeout http-request 10s
timeout http-keep-alive 4s
option forwardfor
http-request set-header X-Forwarded-Proto https
{{ web_security_options(['no_frames', 'block_xss', 'hsts', 'no_sniff']) }}
{{ acme_challenge(letsencrypt_server) }}
use_backend {{ site_name }}__default
{% endblock frontend %}

View file

@ -590,8 +590,7 @@ md-eu1.qa.komreg.net:
- 'se-tug-lb-1.sunet.se'
port: '443'
'^demw-[0-9]+\.sveidas\.se$':
sunet_iaas_cloud:
'^demw-[0-9]+\.komreg\.net$':
eid::dockerhost:
konsulter:
autoupdate:
@ -605,8 +604,8 @@ md-eu1.qa.komreg.net:
sites:
'demw.eidas.swedenconnect.se':
frontends:
- 'se-fre-lb-1.sunet.se'
- 'se-tug-lb-1.sunet.se'
- 'fe-fre-3.komreg.net'
- 'fe-tug-3.komreg.net'
port: '443'
'^refidp-[0-9]+\.qa\.sveidas\.se$':