server { listen 443 ssl http2; listen [::]:443 ssl http2; server_name nginx-exporter.services.l3d.space; include snippets/tls_parameters_{{ site.name }}.snippet.conf; include snippets/tls_certificate_{{ site.name }}.snippet.conf; include snippets/logging_{{ site.name }}.snippet.conf; location / { charset utf-8; proxy_pass http://localhost:9113; proxy_read_timeout 3600; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; allow 127.0.0.1; # allow requests from localhost allow ::1; # allow requests from localhost {% for address in prometheus_addr %} allow {{ address }}; # allow prometheus Address {% endfor %} deny all; # deny all other hosts } }