mirror of
https://github.com/R0m1k3/LiveFlow.git
synced 2026-10-11 17:27:19 +02:00
Un site catch-all :443 avec tls internal ne génère aucun certificat, ce qui fait échouer la négociation TLS. Le Caddyfile prend désormais l'adresse via LIVEFLOW_HOST (+ default_sni pour les connexions par IP, sans SNI). https://claude.ai/code/session_01YHMp3EKzr4s6o8w1ygxuUe
19 lines
551 B
Caddyfile
19 lines
551 B
Caddyfile
{
|
|
# Certificats auto-signés locaux : indispensable pour que le navigateur
|
|
# (surtout sur téléphone) autorise l'accès au micro (getUserMedia).
|
|
local_certs
|
|
# Les connexions par IP n'envoient pas de SNI : on force le certificat.
|
|
default_sni {$LIVEFLOW_HOST:localhost}
|
|
}
|
|
|
|
# LIVEFLOW_HOST = IP ou nom d'hôte du serveur (défini dans docker-compose).
|
|
# Caddy génère un certificat auto-signé pour cette adresse au démarrage.
|
|
{$LIVEFLOW_HOST:localhost}:443 {
|
|
tls internal
|
|
reverse_proxy app:8000
|
|
}
|
|
|
|
:80 {
|
|
redir https://{host}{uri} permanent
|
|
}
|