X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=mods%2Fsample-nginx.config;h=b90e1fe29f710e011ee9681140fa0d5d77358775;hb=6b03ee29229e1c56e1ba71fb3ff062fa4f1ce51a;hp=7bf8a1f1050527e20276e6b9527eacb253662a6d;hpb=cb600b5a5fead1ef30b36d493210e3e8ef5d6b90;p=friendica.git diff --git a/mods/sample-nginx.config b/mods/sample-nginx.config index 7bf8a1f105..b90e1fe29f 100644 --- a/mods/sample-nginx.config +++ b/mods/sample-nginx.config @@ -84,27 +84,18 @@ server { # rewrite to front controller as default rule location / { - if (!-e $request_filename) { - rewrite ^(.*)$ /index.php?pagename=$1; - } + try_files $uri /index.php?pagename=$uri&$args; } # make sure webfinger and other well known services aren't blocked # by denying dot files and rewrite request to the front controller location ^~ /.well-known/ { allow all; - if (!-e $request_filename) { - rewrite ^(.*)$ /index.php?pagename=$1; - } + rewrite ^ /index.php?pagename=$uri; } include mime.types; - # block these file types - location ~* \.(tpl|md|tgz|log|out)$ { - deny all; - } - # statically serve these file types when possible otherwise fall back to # front controller allow browser to cache them added .htm for advanced source # code editor library @@ -136,10 +127,23 @@ server { include fastcgi_params; fastcgi_index index.php; fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name; + + fastcgi_buffers 16 16k; + fastcgi_buffer_size 32k; + } + + # block these file types + location ~* \.(tpl|md|tgz|log|out)$ { + deny all; } # deny access to all dot files location ~ /\. { deny all; } + + # deny access to the CLI scripts + location ^~ /bin { + deny all; + } }