<% if port == 80 -%>
# Redirect to secure site
- Redirect permanent / https://donate.openstreetmap.org
+ Redirect permanent / https://donate.openstreetmap.org/
<% end -%>
<% if port == 443 -%>
#
# Enable SSL
#
SSLEngine on
+ SSLCertificateFile /etc/ssl/certs/openstreetmap.pem
+ SSLCertificateKeyFile /etc/ssl/private/openstreetmap.key
+ SSLCertificateChainFile /etc/ssl/certs/rapidssl.pem
# HSTS (mod_headers is required)
Header always set Strict-Transport-Security "max-age=300"
Alias /donors.csv /srv/donate.openstreetmap.org/data/donors.csv
# Redirect previous compaigns to homepage
+ Redirect permanent /domain https://donate.openstreetmap.org/
+ Redirect permanent /memorial https://donate.openstreetmap.org/
+ Redirect permanent /server2011 https://donate.openstreetmap.org/
Redirect permanent /server2013 https://donate.openstreetmap.org/
Redirect permanent /server2015 https://donate.openstreetmap.org/
# Enable deflate compression on .csv files if possible
<IfModule mod_deflate.c>
+ DeflateCompressionLevel 9
AddOutputFilterByType DEFLATE text/csv
</IfModule>
+
+ <IfModule mod_expires.c>
+ ExpiresDefault "access plus 15 minutes"
+ ExpiresByType text/html "access plus 5 minutes"
+ ExpiresByType text/csv "access plus 1 minute"
+ </IfModule>
</VirtualHost>
<% end -%>