diff --git a/cookbooks/reverse_proxy/files/ip_forward.conf b/cookbooks/reverse_proxy/files/ip_forward.conf new file mode 100644 index 0000000..4234b54 --- /dev/null +++ b/cookbooks/reverse_proxy/files/ip_forward.conf @@ -0,0 +1 @@ +net.ipv4.ip_forward = 1 diff --git a/cookbooks/reverse_proxy/recipes/default.rb b/cookbooks/reverse_proxy/recipes/default.rb index 666057d..7bf6463 100644 --- a/cookbooks/reverse_proxy/recipes/default.rb +++ b/cookbooks/reverse_proxy/recipes/default.rb @@ -7,6 +7,14 @@ cookbook_file "/etc/nginx/#{node['config']['external_hostname']}.crt" do notifies :restart, 'service[nginx]' end +cookbook_file "/etc/sysctl.d/ip_forward.conf" do + owner 'root' + group 'root' + mode 0644 +end + +execute 'sysctl -w net.ipv4.ip_forward=1' + cookbook_file "/etc/nginx/#{node['config']['external_hostname']}.key" do owner 'root' group 'root' -- libgit2 0.21.2