diff --git a/roles/nginx/templates/nginx.conf.j2 b/roles/nginx/templates/nginx.conf.j2 index b6733d2..40fa906 100644 --- a/roles/nginx/templates/nginx.conf.j2 +++ b/roles/nginx/templates/nginx.conf.j2 @@ -54,8 +54,11 @@ http { ssl_prefer_server_ciphers off; server { - listen 443 ssl http2; - listen [::]:443 ssl http2; + listen 443 ssl; + listen [::]:443 ssl; + http2 on; + http3 off; + server_name {{ inventory_hostname }}; ssl_certificate {{ tls_certs }}/{{ inventory_hostname }}-fullchain.crt; diff --git a/roles/nginx_site/templates/site.conf.j2 b/roles/nginx_site/templates/site.conf.j2 index ca54573..a806608 100644 --- a/roles/nginx_site/templates/site.conf.j2 +++ b/roles/nginx_site/templates/site.conf.j2 @@ -14,8 +14,11 @@ upstream {{ nginx_site_name }} { } {% endif %} server { - listen 443 ssl http2; - listen [::]:443 ssl http2; + listen 443 ssl; + listen [::]:443 ssl; + http2 on; + http3 off; + server_name {{ nginx_site_name }}; access_log {{ nginx_logdir }}/{{ nginx_site_name }}.access.log custom;