upstream artxss { ip_hash; server 127.0.0.1:10050; server 127.0.0.1:10051; server 127.0.0.1:10052; server 127.0.0.1:10053; server 127.0.0.1:10054; } server { listen 80; server_name web-art.ecsc18.hack.cert.pl; return 301 https://$host$request_uri; } server { listen 443 ssl; server_name web-art.ecsc18.hack.cert.pl; ssl_certificate /etc/letsencrypt/live/ecsc18.hack.cert.pl/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/ecsc18.hack.cert.pl/privkey.pem; try_files $uri $uri/ =404; location / { #allow 127.0.0.1; #allow 195.164.49.185; #allow 195.187.238.0/24; #deny all; proxy_set_header Host $http_host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header REMOTE_ADDR $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto $scheme; proxy_http_version 1.1; proxy_pass http://artxss; } }