From f9e0cd4f68b05e371d6e61f71b74e41197e4eb03 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 15 Jun 2023 04:57:37 +0000 Subject: [PATCH 1/2] build: bump nginx from 1.25.0-alpine to 1.25.1-alpine Bumps nginx from 1.25.0-alpine to 1.25.1-alpine. --- updated-dependencies: - dependency-name: nginx dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- Dockerfile | 2 +- Dockerfile.alpine | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/Dockerfile b/Dockerfile index 905457a..c2915ef 100644 --- a/Dockerfile +++ b/Dockerfile @@ -3,7 +3,7 @@ FROM nginxproxy/docker-gen:0.10.4-debian AS docker-gen FROM nginxproxy/forego:0.17.1-debian AS forego # Build the final image -FROM nginx:1.25.0 +FROM nginx:1.25.1 ARG NGINX_PROXY_VERSION # Add DOCKER_GEN_VERSION environment variable because diff --git a/Dockerfile.alpine b/Dockerfile.alpine index 9cd449c..7a159eb 100644 --- a/Dockerfile.alpine +++ b/Dockerfile.alpine @@ -3,7 +3,7 @@ FROM nginxproxy/docker-gen:0.10.4 AS docker-gen FROM nginxproxy/forego:0.17.1 AS forego # Build the final image -FROM nginx:1.25.0-alpine +FROM nginx:1.25.1-alpine ARG NGINX_PROXY_VERSION # Add DOCKER_GEN_VERSION environment variable because From 45c181b9728e4fcd6484994258868b4ad9fa4e8e Mon Sep 17 00:00:00 2001 From: Nicolas Duchon Date: Tue, 4 Jul 2023 07:54:38 +0200 Subject: [PATCH 2/2] build: update template for nginx 1.25.1 http2 on the listen directive have been deprecated and replaced by the server level http2 directive. --- nginx.tmpl | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/nginx.tmpl b/nginx.tmpl index fc6bca8..fb0766b 100644 --- a/nginx.tmpl +++ b/nginx.tmpl @@ -429,6 +429,7 @@ proxy_set_header Proxy ""; server { server_name _; # This is just an invalid value which will never trigger on a real hostname. server_tokens off; + http2 on; {{- if $fallback_http }} listen {{ $globals.external_http_port }}; {{- /* Do not add `default_server` (see comment above). */}} {{- if $globals.enable_ipv6 }} @@ -436,9 +437,9 @@ server { {{- end }} {{- end }} {{- if $fallback_https }} - listen {{ $globals.external_https_port }} ssl http2; {{- /* Do not add `default_server` (see comment above). */}} + listen {{ $globals.external_https_port }} ssl; {{- /* Do not add `default_server` (see comment above). */}} {{- if $globals.enable_ipv6 }} - listen [::]:{{ $globals.external_https_port }} ssl http2; {{- /* Do not add `default_server` (see comment above). */}} + listen [::]:{{ $globals.external_https_port }} ssl; {{- /* Do not add `default_server` (see comment above). */}} {{- end }} ssl_session_cache shared:SSL:50m; ssl_session_tickets off; @@ -548,6 +549,7 @@ server { {{- if $server_tokens }} server_tokens {{ $server_tokens }}; {{- end }} + http2 on; {{ $globals.access_log }} {{- if or (eq $https_method "nohttps") (not $cert_ok) (eq $https_method "noredirect") }} listen {{ $globals.external_http_port }} {{ $default_server }}; @@ -556,9 +558,9 @@ server { {{- end }} {{- end }} {{- if ne $https_method "nohttps" }} - listen {{ $globals.external_https_port }} ssl http2 {{ $default_server }}; + listen {{ $globals.external_https_port }} ssl {{ $default_server }}; {{- if $globals.enable_ipv6 }} - listen [::]:{{ $globals.external_https_port }} ssl http2 {{ $default_server }}; + listen [::]:{{ $globals.external_https_port }} ssl {{ $default_server }}; {{- end }} {{- if $cert_ok }}