server { listen 80; listen 443 ssl; ssl_certificate /etc/letsencrypt/tmp/domain/fullchain.pem; ssl_certificate_key /etc/letsencrypt/tmp/domain/privkey.pem; server_name domain; location / { proxy_pass https://lxc; proxy_set_header Host $host; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Real-IP $remote_addr; } } # TODO: example site.auth.conf