(logging) { log { output stdout } } { # local_certs email {$TLS_EMAIL} acme_ca {$CA_URL} } (errorpages) { handle_errors { rewrite * /{http.error.status_code}.html file_server { root /srv/errorpages } } } (maintenance) { @denied not remote_ip forwarded {$CADDY_BYPASS_IP} handle @denied { rewrite * /maintenance.html file_server { root /srv/errorpages status 503 } } } https://{$BASE_DOMAIN} { import logging import errorpages @matrix { path /_matrix/* /_synapse/* } reverse_proxy @matrix matrix:8008 root * /srv/homepage file_server } https://{$BASE_DOMAIN}:8448 { import logging import errorpages reverse_proxy matrix:8008 } # needs to be http! http://autoconfig.{$BASE_DOMAIN} { file_server { root /srv/autoconfig } } https://status.{$BASE_DOMAIN} { import errorpages import logging redir https://stats.uptimerobot.com/PMoGJHK8W9 } https://post.{$BASE_DOMAIN} { import errorpages import logging reverse_proxy echo:8000 } https://account.{$BASE_DOMAIN} { import logging import errorpages reverse_proxy authentik:80 } https://cloud.{$BASE_DOMAIN} { import logging import errorpages redir /.well-known/carddav /remote.php/dav redir /.well-known/caldav /remote.php/dav redir /.well-known/webfinger /index.php/.well-known/webfinger redir /.well-known/nodeinfo /index.php/.well-known/nodeinfo reverse_proxy nextcloud:80 } https://git.{$BASE_DOMAIN} { import logging import errorpages reverse_proxy forgejo:3000 } # https://echo.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy echo:8000 # } # https://ci.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy woodpecker:8000 # } # https://passwords.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy /notifications/hub/negotiate* vaultwarden:80 # reverse_proxy /notifications/hub* vaultwarden:3012 # reverse_proxy vaultwarden:80 # } # https://md.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy hedgedoc:3000 # } # https://ci-demo.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy docker-ci-demo:8000 # } # https://stuff.{$BASE_DOMAIN} { # import logging # import errorpages # root * /srv/stuff # file_server browse # basicauth /dev { # dev {$DEV_PASS} # } # } # https://hackmd-next.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy codimd:3000 # } # https://amp.{$BASE_DOMAIN} { # import logging # import errorpages # reverse_proxy minecraft:8080 # } # https://map.amp.{$BASE_DOMAIN} { # import logging # import errorpages # root * /srv/bluemap # file_server # reverse_proxy /live/* minecraft:8123 # @JSONgz { # path *.json # file { # try_files {path}.gz # } # } # route @JSONgz { # rewrite {http.matchers.file.relative} # header Content-Type application/json # header Content-Encoding gzip # } # }