From 3e96cb6fd74734437b48c4a42e1db6068cd0cfe2 Mon Sep 17 00:00:00 2001 From: John Lancaster <32917998+jsl12@users.noreply.github.com> Date: Sun, 28 Dec 2025 14:16:21 -0600 Subject: [PATCH] caddyfile tweaks --- Caddyfile | 9 ++------- docker-compose.yml | 2 +- 2 files changed, 3 insertions(+), 8 deletions(-) diff --git a/Caddyfile b/Caddyfile index 7845153..6b6f006 100644 --- a/Caddyfile +++ b/Caddyfile @@ -4,16 +4,11 @@ :8443 { tls /certs/foo.crt /certs/foo.key { + protocols tls1.3 client_auth { mode require_and_verify trusted_ca_cert_file /certs/root_ca.crt } } - - reverse_proxy rest-server:8000 { - header_up Host {host} - header_up X-Real-IP {remote} - header_up X-Forwarded-For {remote} - header_up X-Forwarded-Proto {scheme} - } + reverse_proxy rest-server:8000 } diff --git a/docker-compose.yml b/docker-compose.yml index c195003..4665d0b 100644 --- a/docker-compose.yml +++ b/docker-compose.yml @@ -5,7 +5,7 @@ services: volumes: - /mnt/restic:/data environment: - - OPTIONS=--no-auth + OPTIONS: --no-auth caddy: image: caddy:alpine