diff --git a/snippets/ldap-auth.conf b/snippets/ldap-auth.conf index 14ae462ffc038a4fc05f730444a95421bfc4ae3a..822c4407093249d3d77133c9e93b86374b2afae9 100644 --- a/snippets/ldap-auth.conf +++ b/snippets/ldap-auth.conf @@ -3,11 +3,7 @@ auth_request /validate; location = /validate { proxy_pass https://auth.shore.co.il/validate; proxy_http_version 1.1; - proxy_ssl_verify on; - proxy_ssl_verify_depth 3; - proxy_ssl_name auth.shore.co.il; - proxy_ssl_server_name on; - proxy_ssl_trusted_certificate /etc/ssl/certs/ca-certificates.crt; + include snippets/proxy-ssl.conf; internal; proxy_pass_request_body off; proxy_set_header Content-Length ""; diff --git a/snippets/proxy-ssl.conf b/snippets/proxy-ssl.conf new file mode 100644 index 0000000000000000000000000000000000000000..b83886af06e69be66442d924d1ca1c2f58c88125 --- /dev/null +++ b/snippets/proxy-ssl.conf @@ -0,0 +1,5 @@ +proxy_ssl_verify on; +proxy_ssl_verify_depth 3; +proxy_ssl_name auth.shore.co.il; +proxy_ssl_server_name on; +proxy_ssl_trusted_certificate /etc/ssl/certs/ca-certificates.crt;