mirror of
https://github.com/R0m1k3/LiveFlow.git
synced 2026-10-11 17:27:19 +02:00
Correction ERR_SSL_PROTOCOL_ERROR : certificat généré pour l'adresse du serveur
Un site catch-all :443 avec tls internal ne génère aucun certificat, ce qui fait échouer la négociation TLS. Le Caddyfile prend désormais l'adresse via LIVEFLOW_HOST (+ default_sni pour les connexions par IP, sans SNI). https://claude.ai/code/session_01YHMp3EKzr4s6o8w1ygxuUe
This commit is contained in:
4 files changed
+16
-1
No files matched your search
@@ -1,3 +1,7 @@
|
||||
# IP ou nom d'hôte du serveur : Caddy génère le certificat HTTPS pour cette
|
||||
# adresse. Indispensable pour accéder à l'app depuis un autre appareil.
|
||||
LIVEFLOW_HOST=192.168.1.16
|
||||
|
||||
# Code langue ISO forcé pour la transcription ("fr", "en"...).
|
||||
# Laisser vide pour la détection automatique de la langue.
|
||||
ASR_LANGUAGE=
|
||||
|
||||
@@ -2,9 +2,13 @@
|
||||
# Certificats auto-signés locaux : indispensable pour que le navigateur
|
||||
# (surtout sur téléphone) autorise l'accès au micro (getUserMedia).
|
||||
local_certs
|
||||
# Les connexions par IP n'envoient pas de SNI : on force le certificat.
|
||||
default_sni {$LIVEFLOW_HOST:localhost}
|
||||
}
|
||||
|
||||
:443 {
|
||||
# LIVEFLOW_HOST = IP ou nom d'hôte du serveur (défini dans docker-compose).
|
||||
# Caddy génère un certificat auto-signé pour cette adresse au démarrage.
|
||||
{$LIVEFLOW_HOST:localhost}:443 {
|
||||
tls internal
|
||||
reverse_proxy app:8000
|
||||
}
|
||||
|
||||
@@ -17,6 +17,10 @@ services:
|
||||
restart: unless-stopped
|
||||
ports:
|
||||
- "8443:443"
|
||||
environment:
|
||||
# ← IP (ou nom d'hôte) de votre serveur Unraid : utilisée pour générer
|
||||
# le certificat HTTPS auto-signé. À adapter si votre IP diffère.
|
||||
- LIVEFLOW_HOST=192.168.1.16
|
||||
volumes:
|
||||
- /mnt/user/appdata/liveflow/Caddyfile:/etc/caddy/Caddyfile:ro
|
||||
- /mnt/user/appdata/liveflow/caddy/data:/data
|
||||
|
||||
@@ -5,6 +5,9 @@ services:
|
||||
ports:
|
||||
- "80:80"
|
||||
- "443:443"
|
||||
environment:
|
||||
# IP ou nom d'hôte du serveur, pour le certificat HTTPS auto-signé
|
||||
- LIVEFLOW_HOST=${LIVEFLOW_HOST:-localhost}
|
||||
volumes:
|
||||
- ./Caddyfile:/etc/caddy/Caddyfile:ro
|
||||
- caddy-data:/data
|
||||
|
||||
Reference in new issue
Block a user