server { proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "upgrade"; listen 443 ssl; server_name gitea.example.com; ssl_certificate /etc/nginx/ssl/*.example.com_2048/fullchain.cer; ssl_certificate_key /etc/nginx/ssl/*.example.com_2048/private.key; location / { proxy_set_header X-Forwarded-For $remote_addr; proxy_set_header X-Forwarded-Proto $scheme; proxy_set_header Host $host; client_max_body_size 50M; proxy_pass http://0.0.0.0:3033; } # add_header Cache-Control "no-cache,no-store"; location /.well-known/acme-challenge { proxy_set_header Host $host; proxy_set_header X-Real_IP $remote_addr; proxy_set_header X-Forwarded-For $remote_addr:$remote_port; proxy_pass http://127.0.0.1:9180; } }