summaryrefslogtreecommitdiffstats
path: root/config/awx-httpd-443.conf
blob: 95157748b21fa23be9049f2f031f1bfe5d65ff31 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
NameVirtualHost *:443
WSGISocketPrefix /var/run/wsgi
WSGIPythonHome /var/lib/awx/venv/tower

# LoadModule ssl_module modules/mod_ssl.so

<VirtualHost _default_:443>
  ServerName localhost
  ServerAlias *
  DocumentRoot /var/lib/awx/public
  SSLEngine on
# This certificate can be replaced.
# However, do not use a different name for, or path to, the SSL certificate.
# Tower's live events feature requires the SSL certificate to be in this location.
  SSLCertificateFile /etc/tower/tower.cert
  SSLCertificateKeyFile /etc/tower/tower.key
  SSLProtocol all -SSLv3 -SSLv2

  WSGIScriptAlias / /var/lib/awx/wsgi.py
  WSGIPassAuthorization On

  WSGIDaemonProcess awx user=awx group=awx processes=2 threads=20 maximum-requests=1000 display-name="%{GROUP}"
  WSGIProcessGroup awx

  Alias /favicon.ico /var/lib/awx/public/static/favicon.ico
  Alias /static/ /var/lib/awx/public/static/

  <Directory /var/lib/awx/>
    <Files wsgi.py>
      <IfVersion >= 2.3>
        Require all granted
      </IfVersion>
      <IfVersion < 2.3>
        Order deny,allow
        Allow from all
      </IfVersion>
    </Files>
  </Directory>

  <Directory /var/lib/awx/public/>
    <IfVersion >= 2.3>
      Require all granted
    </IfVersion>
    <IfVersion < 2.3>
      Order deny,allow
      Allow from all
    </IfVersion>
  </Directory>

  Include conf.d/awx-munin.conf
</VirtualHost>