Skip to content

Instantly share code, notes, and snippets.

@defensivedepth
Created April 9, 2024 13:14
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save defensivedepth/3c1cb25315090757aed03e9d5a5e9b06 to your computer and use it in GitHub Desktop.
Save defensivedepth/3c1cb25315090757aed03e9d5a5e9b06 to your computer and use it in GitHub Desktop.
# Server block for FleetDM on port 9443
server {
listen 9443 ssl;
ssl_certificate /tmp/server.cert;
ssl_certificate_key /tmp/server.key;
location / {
proxy_pass https://localhost:4443; # FleetDM is listening on localhost:4443
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
}
# Server block for specific paths on port 443
server {
listen 443 ssl;
ssl_certificate /tmp/server.cert;
ssl_certificate_key /tmp/server.key;
location /api/osquery {
proxy_pass https://localhost:4443;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
location /api/fleet/orbit/config {
proxy_pass https://localhost:4443;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
location /api/fleet/orbit/ping {
proxy_pass https://localhost:4443;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
location /api/v1/osquery {
proxy_pass https://localhost:4443;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment