server { listen 80 default_server; listen [::]:80 default_server ipv6only=on; listen 443 ssl; ssl_protocols TLSv1.2; ssl_prefer_server_ciphers on; root /usr/share/nginx/html; index index.html; server_tokens off; add_header X-Frame-Options DENY; add_header X-Content-Type-Options nosniff; server_name {{ server_name }}; ssl_certificate {{ tls_dir }}{{ cert_file }}; ssl_certificate_key {{ tls_dir }}{{ key_file }}; location / { try_files $uri $uri/ =404; } }