upstream production { least_conn; server www.monserveur.fr:21081 max_fails=3 fail_timeout=5s; server www.monserveur.fr:22081 max_fails=3 fail_timeout=5s; server www.monserveur.fr:23081 max_fails=3 fail_timeout=5s; server www.monserveur.fr:24081 max_fails=3 fail_timeout=5s; } upstream recette { least_conn; server www.monserveur.fr:31081 max_fails=3 fail_timeout=5s; # server www.monserveur.fr:32081 max_fails=3 fail_timeout=5s; } server { listen 443 ssl http2; listen [::]:443 ssl http2; ssl on; ssl_certificate /etc/nginx/ssl/monserveur.crt; ssl_certificate_key /etc/nginx/ssl/monserveur.key; ssl_trusted_certificate /etc/nginx/ssl/DigiCertCA.crt; ssl_protocols TLSv1.2; ssl_prefer_server_ciphers on; ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384; add_header Strict-Transport-Security "max-age=63072000" always; location / { proxy_pass https://production; proxy_http_version 1.1; proxy_request_buffering off; proxy_set_header Connection ""; proxy_set_header Host $host:$server_port; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-Host $host:$server_port; proxy_set_header X-Forwarded-Server $host; proxy_set_header X-Forwarded-Port $server_port; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto https; } } server { listen 1443 ssl http2; listen [::]:1443 ssl http2; ssl on; ssl_certificate /etc/nginx/ssl/monserveur.crt; ssl_certificate_key /etc/nginx/ssl/monserveur.key; ssl_trusted_certificate /etc/nginx/ssl/DigiCertCA.crt; ssl_protocols TLSv1.2; ssl_prefer_server_ciphers on; ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384; add_header Strict-Transport-Security "max-age=63072000" always; location / { proxy_pass https://recette; proxy_http_version 1.1; proxy_request_buffering off; proxy_set_header Connection ""; proxy_set_header Host $host:$server_port; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-Host $host:$server_port; proxy_set_header X-Forwarded-Server $host; proxy_set_header X-Forwarded-Port $server_port; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto https; } }