traefik/tls.yml

27 lines
623 B
YAML
Raw Permalink Normal View History

2023-11-24 17:46:05 +01:00
http:
middlewares:
secureHeaders:
headers:
sslRedirect: true
forceSTSHeader: true
stsIncludeSubdomains: true
stsPreload: true
stsSeconds: 31536000
tls:
stores:
default:
defaultCertificate:
2024-01-16 23:36:22 +01:00
certFile: /tls/selfsigned.crt
keyFile: /tls/selfsigned.key
2023-11-24 17:46:05 +01:00
certificates:
2024-01-16 23:36:22 +01:00
- certFile: /tls/selfsigned.crt
keyFile: /tls/selfsigned.key
2023-12-05 11:41:04 +01:00
options:
default:
clientAuth:
# in PEM format. each file can contain multiple CAs.
caFiles:
2024-01-16 23:36:22 +01:00
- /tls/selfsigned.crt
2023-12-05 11:41:04 +01:00
clientAuthType: VerifyClientCertIfGiven