summaryrefslogtreecommitdiffstats
path: root/roles/httpd/reverseproxy
diff options
context:
space:
mode:
authorPatrick Uiterwijk <puiterwijk@redhat.com>2016-04-12 13:56:13 +0000
committerPatrick Uiterwijk <puiterwijk@redhat.com>2016-04-12 13:56:26 +0000
commit97b00e90aba793032a23d20ca7fb8d8465267de9 (patch)
tree12193a6be416ace6b2dcb0062cc53c7db86089a0 /roles/httpd/reverseproxy
parentea803c6b2c8d5685c100fe9f30670d0e861cd5ad (diff)
downloadansible-97b00e90aba793032a23d20ca7fb8d8465267de9.tar.gz
ansible-97b00e90aba793032a23d20ca7fb8d8465267de9.tar.xz
ansible-97b00e90aba793032a23d20ca7fb8d8465267de9.zip
Use Fedora proxies as only proxy for Docker Registry
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
Diffstat (limited to 'roles/httpd/reverseproxy')
-rw-r--r--roles/httpd/reverseproxy/templates/reversepassproxy.registry.conf11
1 files changed, 11 insertions, 0 deletions
diff --git a/roles/httpd/reverseproxy/templates/reversepassproxy.registry.conf b/roles/httpd/reverseproxy/templates/reversepassproxy.registry.conf
new file mode 100644
index 000000000..e2c65e17c
--- /dev/null
+++ b/roles/httpd/reverseproxy/templates/reversepassproxy.registry.conf
@@ -0,0 +1,11 @@
+RequestHeader set X-Forwarded-Scheme https early
+RequestHeader set X-Scheme https early
+RequestHeader set X-Forwarded-Proto https early
+ProxyPreserveHost On
+
+ProxyPass {{ localpath }} {{ proxyurl }}{{remotepath}}
+ProxyPassReverse {{ localpath }} {{ proxyurl }}{{remotepath}}
+
+SSLVerifyClient optional
+SSLVerifyDepth 1
+SSLCACertificateFile /etc/httpd/pki/fedora-server-ca.cert