Skip to content
Branch: master
Commits on Jun 18, 2019
  1. Merge pull request #21497 from guardian/aa-dev-nginx

    akash1810 committed Jun 18, 2019
    use dev-nginx project for local nginx setup
Commits on Jun 7, 2019
  1. no need to add to hosts file

    akash1810 committed Jun 7, 2019
    * has been updated in DNS to resolve to
  2. use dev-nginx project for local nginx setup

    akash1810 committed Jun 6, 2019
    simplifies setup script
Commits on Jun 4, 2019
  1. Merge pull request #21455 from guardian/aa-mkcert

    akash1810 committed Jun 4, 2019
    update local nginx to use mkcert
Commits on Jun 3, 2019
  1. only stop nginx if it is already running

    akash1810 committed Jun 3, 2019
    trying to stop nginx when it is not running fails...
  2. use mkcert to generate a certificate

    akash1810 committed May 28, 2019
    Currently we require `Identity` credentials to setup nginx as we're storing the certificate in S3. This is problematic in a few ways:
    - A reliance on S3 to setup nginx
    - A reliance on having the correct Janus credentials
    - We need to update the certificate once a year as it expires
    - Certificate renewal is handled by another team
    - Every machine is using the same certificate; if its compromised once, its compromised everywhere
    mkcert provides:
    - Security as each machine acts as their own CA
    - No reliance on S3 or Identity Janus credentials
    - Frictionless certificate renewal - we just re-run the script
    Also writes nginx site config to `/usr/local/etc/nginx/servers/` directory as is preferred with latest version of nginx.
  3. remove nginx config deprecation warning

    akash1810 committed May 28, 2019
    use latest ssl directive
You can’t perform that action at this time.