eupolicy.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
This Mastodon server is a friendly and respectful discussion space for people working in areas related to EU policy. When you request to create an account, please tell us something about you.

Server stats:

196
active users

#nginx

2 posts2 participants0 posts today
Stephen<p>My first experiment with <a href="https://mastodon.social/tags/Docker" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Docker</span></a> (other than following <span class="h-card" translate="no"><a href="https://mastodon.nzoss.nz/@lightweight" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>lightweight</span></a></span>'s amazing <a href="https://mastodon.social/tags/Nextcloud" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nextcloud</span></a> / <a href="https://mastodon.social/tags/OnlyOffice" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OnlyOffice</span></a> installation instructions) works!<br>I've now got a minimal <a href="https://mastodon.social/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> container serving an <a href="https://mastodon.social/tags/XML" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>XML</span></a> file which is transformed in the browser to HTML according to a <a href="https://mastodon.social/tags/XSLT" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>XSLT</span></a> stylesheet. And it's all running on the same cheap <span class="h-card" translate="no"><a href="https://mastodon.hetzner.social/@hetzner" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>hetzner</span></a></span> VPS:<br><a href="https://blog.harlow.net.nz/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">blog.harlow.net.nz/</span><span class="invisible"></span></a></p><p>(Here's the latest version of <span class="h-card" translate="no"><a href="https://mastodon.nzoss.nz/@lightweight" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>lightweight</span></a></span>'s tutorial <a href="https://tech.oeru.org/install-nextcloud-hub-and-onlyoffice-ubuntu-2404-docker-compose" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">tech.oeru.org/install-nextclou</span><span class="invisible">d-hub-and-onlyoffice-ubuntu-2404-docker-compose</span></a>).</p>
Guardian Project<p><a href="https://social.librem.one/tags/DEfO" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DEfO</span></a> has completed <a href="https://social.librem.one/tags/ECH" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ECH</span></a> implementation for <a href="https://social.librem.one/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> and there is a pull request:</p><p><a href="https://github.com/nginx/nginx/pull/840" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/nginx/nginx/pull/84</span><span class="invisible">0</span></a></p><p>If you want to see ECH in nginx sooner rather than later, please jump in and review, give feedback, thumbs up, etc.</p><p><a href="https://social.librem.one/tags/EncryptedClientHello" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EncryptedClientHello</span></a> <a href="https://social.librem.one/tags/TLS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TLS</span></a> <a href="https://social.librem.one/tags/OpenSSL" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenSSL</span></a></p>
glyn<p>New blog post: Is it worth blocking AI bots?</p><p><a href="https://underlap.org/is-it-worth-blocking-ai-bots/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">underlap.org/is-it-worth-block</span><span class="invisible">ing-ai-bots/</span></a></p><p><a href="https://fosstodon.org/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a></p>
gyptazy<p>It doesn’t occur often, but when it does, it brings a smile to my face. This is my error page served from the proxy when the backend can't process the requests (or is unavailable).</p><p><a href="https://mastodon.gyptazy.com/tags/manpageblog" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>manpageblog</span></a> <a href="https://mastodon.gyptazy.com/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://mastodon.gyptazy.com/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> <a href="https://mastodon.gyptazy.com/tags/proxy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>proxy</span></a> <a href="https://mastodon.gyptazy.com/tags/backend" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>backend</span></a> <a href="https://mastodon.gyptazy.com/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://mastodon.gyptazy.com/tags/freebsd" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freebsd</span></a> <a href="https://mastodon.gyptazy.com/tags/tux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tux</span></a> <a href="https://mastodon.gyptazy.com/tags/beastie" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>beastie</span></a></p>
Kushal Das :python: :tor:<p><a href="https://blog.nginx.org/blog/native-support-for-acme-protocol" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.nginx.org/blog/native-sup</span><span class="invisible">port-for-acme-protocol</span></a> this will be helpful. <a href="https://toots.dgplug.org/tags/ACME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ACME</span></a> <a href="https://toots.dgplug.org/tags/NGINX" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NGINX</span></a> <span class="h-card" translate="no"><a href="https://infosec.exchange/@letsencrypt" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>letsencrypt</span></a></span> <a href="https://toots.dgplug.org/tags/TLS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TLS</span></a> <a href="https://toots.dgplug.org/tags/certificates" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>certificates</span></a> <a href="https://toots.dgplug.org/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> <a href="https://toots.dgplug.org/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a></p>
i am root<p>This seems like a big deal. Now Let's Encrypt is built into <a href="https://puddle.town/tags/Nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nginx</span></a> and it's really easy to enable TLS and get free certs. No need for certbot or third party packages.</p><p><a href="https://blog.nginx.org/blog/native-support-for-acme-protocol" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.nginx.org/blog/native-sup</span><span class="invisible">port-for-acme-protocol</span></a></p>
Wesley Moore<p>Yesssss!</p><p>"We are very excited to announce the preview release of ACME support in NGINX. The implementation introduces a new module ngx_http_acme_module that provides built-in directives for requesting, installing, and renewing certificates directly from NGINX configuration. The ACME support leverages our NGINX-Rust SDK and is available as a Rust-based dynamic module…"</p><p><a href="https://blog.nginx.org/blog/native-support-for-acme-protocol" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.nginx.org/blog/native-sup</span><span class="invisible">port-for-acme-protocol</span></a></p><p>/via <a href="https://mastodon.bsd.cafe/@acirep/115022763840493408" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">mastodon.bsd.cafe/@acirep/1150</span><span class="invisible">22763840493408</span></a> <a href="https://mastodon.decentralised.social/tags/Rust" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Rust</span></a> <a href="https://mastodon.decentralised.social/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a></p>
Alexandre :freebsd:<p><a href="https://mastodon.bsd.cafe/tags/NGINX" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NGINX</span></a> Native support for <a href="https://mastodon.bsd.cafe/tags/ACME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ACME</span></a> protocol<br><a href="https://blog.nginx.org/blog/native-support-for-acme-protocol" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.nginx.org/blog/native-sup</span><span class="invisible">port-for-acme-protocol</span></a><br><a href="https://mastodon.bsd.cafe/tags/Web" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Web</span></a> <a href="https://mastodon.bsd.cafe/tags/Webserver" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Webserver</span></a></p>
jon ⚝<p>About time. <a href="https://degrowth.social/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a></p><p><a href="https://mastodon.bsd.cafe/@acirep/115022763840493408" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">mastodon.bsd.cafe/@acirep/1150</span><span class="invisible">22763840493408</span></a></p>
Hacker News 50<p>Nginx Introduces Native Support for Acme Protocol</p><p>Link: <a href="https://blog.nginx.org/blog/native-support-for-acme-protocol" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.nginx.org/blog/native-sup</span><span class="invisible">port-for-acme-protocol</span></a><br>Discussion: <a href="https://news.ycombinator.com/item?id=44889941" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.ycombinator.com/item?id=4</span><span class="invisible">4889941</span></a></p><p><a href="https://social.lansky.name/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a></p>
TechnoTenshi :verified_trans: :Fire_Lesbian:<p>NGINX releases preview of native ACME protocol support via new Rust-based module, enabling direct SSL/TLS certificate issuance and renewal from configuration without external tools like Certbot, aiming to simplify management and improve security.</p><p><a href="https://blog.nginx.org/blog/native-support-for-acme-protocol" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.nginx.org/blog/native-sup</span><span class="invisible">port-for-acme-protocol</span></a></p><p><a href="https://infosec.exchange/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> <a href="https://infosec.exchange/tags/acme" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>acme</span></a> <a href="https://infosec.exchange/tags/ssl" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ssl</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
Kathleen Fitzpatrick<p>I have been fighting with the process of setting up a server on my home network for what is now literally months. (I keep having to walk away from the project because of that whole “day job” thing, plus travel and so forth.) If anyone has advice to offer, it would not be unsolicited! <a href="https://kfitz.info/networking-continued/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">kfitz.info/networking-continue</span><span class="invisible">d/</span></a> <a href="https://hcommons.social/tags/homelab" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>homelab</span></a> <a href="https://hcommons.social/tags/dns" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dns</span></a> <a href="https://hcommons.social/tags/proxmox" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>proxmox</span></a> <a href="https://hcommons.social/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a></p>
stux⚡<p>Just edited our <a href="https://mstdn.social/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> configs and added</p><p>if ($http_user_agent ~* "Meta-ExternalAgent") {<br> return 403;<br>}</p><p>to the server block</p><p><a href="https://mstdn.social/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> <a href="https://mstdn.social/tags/NoAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NoAI</span></a> <a href="https://mstdn.social/tags/Meta" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Meta</span></a></p>
keef<p>When protecting a set of small static websites against the onslaught of AI crawler bots, something like Anubis is a lot of effort to install. </p><p>So, I knocked up something that might help against the dumber bots, coded entirely inside nginx config so there's no other moving parts to install.</p><p>I've done some isolated testing but haven't installed it in anger yet - but I might add it to e.g. my blog and <a href="https://mastodon.online/tags/Faircamp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Faircamp</span></a> sites.</p><p><a href="https://evilgeniusrobot.uk/posts/a-simple-bot-gatekeeper-for-nginx.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">evilgeniusrobot.uk/posts/a-sim</span><span class="invisible">ple-bot-gatekeeper-for-nginx.html</span></a></p><p><a href="https://mastodon.online/tags/AIbots" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AIbots</span></a> <a href="https://mastodon.online/tags/botnet" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>botnet</span></a> <a href="https://mastodon.online/tags/badBot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>badBot</span></a> <a href="https://mastodon.online/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a></p>
rvstaveren<p>TIL: I needed to add the following to <a href="https://mastodon.online/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a>.conf as <a href="https://mastodon.online/tags/apache" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>apache</span></a> has tightened SNI checking</p><p>proxy_ssl_server_name on;<br>proxy_ssl_name $host;</p>
algernon had enough adulting for a day<p>What if...</p><pre><code>http { server { iocaine /run/iocaine/iocaine.socket; # rest of your server config } } </code></pre><p>Just a wee <a href="https://come-from.mad-scientist.club/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> plugin. Or one for your favourite reverse proxy, or tool that can integrate with iocaine one way or another!</p>
Jeff Sikes<p>Anyone else use NGINX Proxy Manager in their homelab? I’ve had some real issues with caching enabled on some self hosted fedi apps. </p><p><a href="https://mastodon.social/tags/HomeLab" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>HomeLab</span></a> <a href="https://mastodon.social/tags/Nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nginx</span></a></p>
LinuxNews.de<p>Aus der nicht enden wollenden Serie: Kinners, tut was für die <a href="https://social.anoxinon.de/tags/itsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>itsecurity</span></a>. </p><p>Nicht jeder Treffer ist immer ein Volltreffer, diese Tools gehen dumm und stupide vor. Ja wp-cron.php ist offen, aber ein <a href="https://social.anoxinon.de/tags/honeypot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>honeypot</span></a>. Das wissen diese Tools halt nicht. Bei uns findet man auch noch andere löchrige Plugins, die sind aber nicht installiert. Hierzu genügt ein einfacher <a href="https://social.anoxinon.de/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> location Block, den Rest macht das <a href="https://social.anoxinon.de/tags/ids" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ids</span></a></p><p>Ein regelmäßiger Scan gehört einfach dazu!</p><p><a href="https://social.anoxinon.de/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://social.anoxinon.de/tags/sicherheitslucken" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sicherheitslucken</span></a> <a href="https://social.anoxinon.de/tags/wpscan" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>wpscan</span></a> <a href="https://social.anoxinon.de/tags/kali" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>kali</span></a></p>
lydia!<p>hey fedi <a href="https://chaos.social/tags/it" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>it</span></a> entities, </p><p>I am trying to debug a simple <a href="https://chaos.social/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> reverse proxy right now. <br>I want requests arriving to my server like /prefix/some-path/file.type to be forwarded to my backend without the prefix. <br>The backend has a dynamic IP so I need to do some variable magic to cause nginx to reevaluate the domain every time.<br>For all that i am using the following config:</p>
Tom :damnified:<p>Remember when I published the metalhead.club anthem on <a href="https://music.metalhead.club" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">music.metalhead.club</span><span class="invisible"></span></a>, some users couldn't access the page and got an error message? </p><p>Until a week ago, I couldn't explain the error. </p><p>Now I can! You can read about where the error comes from and what my fix looks like on my blog: </p><p>“Nginx HTTP/3 proxy server displays content from the wrong virtual host” - <a href="https://thomas-leister.de/en/nginx-http3-quic-proxy-wrong-virtual-host/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thomas-leister.de/en/nginx-htt</span><span class="invisible">p3-quic-proxy-wrong-virtual-host/</span></a></p><p><a href="https://metalhead.club/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> <a href="https://metalhead.club/tags/quic" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>quic</span></a> <a href="https://metalhead.club/tags/http" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>http</span></a> <a href="https://metalhead.club/tags/nginx" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nginx</span></a> <a href="https://metalhead.club/tags/webserver" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webserver</span></a> <a href="https://metalhead.club/tags/server" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>server</span></a></p>