server { listen 443 default ssl; server_name "auth.{{ base_domain }}"; add_header Strict-Transport-Security max-age=2592000; set $oauth2proxy oauth2-proxy; location / { proxy_pass http://$oauth2proxy:4180; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Scheme $scheme; proxy_connect_timeout 1; proxy_send_timeout 30; proxy_read_timeout 30; } }