Version-control the shared Caddy edge proxy
The droplet's single Caddy container terminates TLS for every site and routes each host to its upstream over proxy_net. Until now its only copy lived on the server; capture compose.yaml and the Caddyfile here, with a README covering how to add a site and reload without downtime. ACME material is git-ignored.
This commit is contained in:
commit
438573ea7b
4 changed files with 117 additions and 0 deletions
7
.gitignore
vendored
Normal file
7
.gitignore
vendored
Normal file
|
|
@ -0,0 +1,7 @@
|
|||
# ACME material and issued certs - private keys, never commit.
|
||||
letsencrypt/
|
||||
acme.json
|
||||
|
||||
# Caddy's data/config live in named Docker volumes on the droplet, not here.
|
||||
data/
|
||||
config/
|
||||
Loading…
Add table
Add a link
Reference in a new issue