]> git.openstreetmap.org Git - rails.git/blob - config/lighttpd.conf
Rearranged some code in the OpenID signup page to make it cleaner
[rails.git] / config / lighttpd.conf
1 #
2 # Load the modules that we need
3 #
4 server.modules = ( 
5   "mod_access",
6   "mod_accesslog",
7   "mod_cgi",
8   "mod_compress",
9   "mod_evasive",
10   "mod_expire",
11   "mod_fastcgi",
12   "mod_redirect",
13   "mod_status"
14 )
15
16 #
17 # Basic server configuration
18 #
19 server.username = "www-data"
20 server.groupname = "www-data"
21 server.pid-file = "/var/run/lighttpd.pid"
22 server.max-fds = 8192
23 server.reject-expect-100-with-417 = "disable"
24
25 #
26 # Setup logging
27 #
28 accesslog.filename = "/var/log/lighttpd/access.log"
29 accesslog.format = "%h %V %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\" \"%{Accept-Language}i\""
30 server.errorlog = "/var/log/lighttpd/error.log"
31
32 #
33 # Allow munin to monitor the server's status
34 #
35 $HTTP["remoteip"] == "128.40.168.98" {
36   status.config-url = "/server-config"
37   status.status-url = "/server-status"
38   status.statistics-url = "/server-statistics"
39 }
40
41 #
42 # Pull in host blocks
43 #
44 include_shell "lighttpd-host-blocks.sh"
45
46 #
47 # Block some troublesome robots
48 #
49 $HTTP["useragent"] =~ "msnbot" { url.access-deny = ("") }
50 $HTTP["useragent"] =~ "Twiceler" { url.access-deny = ("") }
51 $HTTP["useragent"] =~ "Baiduspider" { url.access-deny = ("") }
52 $HTTP["useragent"] =~ "Sosospider+" { url.access-deny = ("") }
53
54 #
55 # Rule to block tilesAtHome when somebody decides to queue vast 
56 # number of tiles for rerendering
57 #
58 #$HTTP["useragent"] == "tilesAtHome" { url.access-deny = ("") }
59
60 #
61 # Block JOSM revisions  1722-1727 as they have a serious bug that causes
62 # lat/lon to be swapped (http://josm.openstreetmap.de/ticket/2804)
63 #
64 $HTTP["useragent"] =~ "^JOSM/[0-9]+\.[0-9]+ \(172[234567] " {
65   url.access-deny = ("")
66 }
67
68 #
69 # Limit connections to 20 per IP address
70 #
71 evasive.max-conns-per-ip = 20
72
73 #
74 # Setup MIME type mapping
75 #
76 mimetype.assign = (
77   ".css" => "text/css",
78   ".gif" => "image/gif",
79   ".html" => "text/html; charset=utf-8",
80   ".jpg" => "image/jpeg",
81   ".js" => "application/x-javascript",
82   ".png" => "image/png",
83   ".swf" => "application/x-shockwave-flash",
84   ".txt" => "text/plain",
85   ".xml" => "text/xml"
86 )
87
88 #
89 # Force special MIME type for crossdomain.xml files
90 #
91 $HTTP["url"] =~ "/crossdomain\.xml$" {
92   mimetype.assign = ( ".xml" => "text/x-cross-domain-policy" )
93 }
94
95 #
96 # Enable compression of appropriate static content
97 #
98 compress.filetype = ( 
99   "application/x-javascript",
100   "application/x-shockwave-flash",
101   "text/css",
102   "text/html",
103   "text/plain"
104 )
105
106 #
107 # Set expiry for static content
108 #
109 expire.url = (
110   "/export/embed.html" => "access 7 days",
111   "/images/" => "access 10 years",
112   "/javascripts/" => "access 10 years",
113   "/openlayers/" => "access 7 days",
114   "/stylesheets/" => "access 10 years"
115 )
116
117 #
118 # Cache compressed content
119 #
120 compress.cache-dir = "/var/cache/lighttpd"
121
122 #
123 # Redirect trac and wiki requests to the right places
124 #
125 url.redirect = ( 
126   "^/trac/(.*)$" => "http://trac.openstreetmap.org/$1",
127   "^/wiki/(.*)$" => "http://wiki.openstreetmap.org/$1"
128 )
129
130 #
131 # Redirect everything except www.openstreetmap.org and
132 # api.openstreetmap.org to www.openstreetmap.org
133 #
134 $HTTP["host"] =~ "^api\." {
135   $HTTP["host"] != "api.openstreetmap.org" {
136     url.redirect = ( "^(.*)$" => "http://api.openstreetmap.org$1" )
137   }
138 }
139 else $HTTP["host"] != "www.openstreetmap.org" {
140   url.redirect = ( "^(.*)$" => "http://www.openstreetmap.org$1" )
141
142
143 #
144 # Run anything with a .pl iextension as a CGI script
145 #
146 cgi.assign = ( ".pl" => "/usr/bin/perl" )
147
148 #
149 # Serve static content from the rails public area ourselves
150 #
151 server.document-root = "/home/rails/public"
152
153 #
154 # Send everything else to the appropriate FastCGI server
155 #
156 $HTTP["useragent"] =~ "^tilesAtHome" {
157   server.error-handler-404 = "/dispatch.tah"
158 }
159 else $HTTP["url"] =~ "^/trace/[0-9]+/data$" {
160   server.error-handler-404 = "/dispatch.bulkapi"
161 }
162 else $HTTP["url"] =~ "^/api/0\.6/(map|trackpoints|amf|amf/read|swf/trackpoints|changeset/[0-9]+/(upload|download))$" {
163   server.error-handler-404 = "/dispatch.bulkapi"
164 }
165 else $HTTP["url"] =~ "^/api/0\.6/.*/(full|history|search|ways)$" {
166   server.error-handler-404 = "/dispatch.bulkapi"
167 }
168 else $HTTP["url"] =~ "^/api/0\.6/" {
169   server.error-handler-404 = "/dispatch.api"
170 }
171 else $HTTP["url"] =~ "^/api/0\.[0-9]+/" {
172   url.access-deny = ("")
173 }
174 else $HTTP["url"] =~ "^/geocoder/(search|description)_osm_namefinder$" {
175   server.error-handler-404 = "/dispatch.namefinder"
176 }
177 else $HTTP["url"] =~ "^/geocoder/(search|description)_geonames$" {
178   server.error-handler-404 = "/dispatch.geonames"
179 }
180 else $HTTP["url"] =~ "^/" {
181   server.error-handler-404 = "/dispatch.web"
182 }
183
184 #
185 # Configure the FastCGI servers
186 #
187 fastcgi.server = ( 
188   ".web" => (
189     ( "host" => "127.0.0.1", "port" => 8000, "check-local" => "disable" ),
190     ( "host" => "127.0.0.1", "port" => 8001, "check-local" => "disable" ),
191     ( "host" => "127.0.0.1", "port" => 8002, "check-local" => "disable" ),
192     ( "host" => "127.0.0.1", "port" => 8003, "check-local" => "disable" ),
193     ( "host" => "127.0.0.1", "port" => 8004, "check-local" => "disable" ),
194     ( "host" => "127.0.0.1", "port" => 8005, "check-local" => "disable" ),
195     ( "host" => "127.0.0.1", "port" => 8006, "check-local" => "disable" ),
196     ( "host" => "127.0.0.1", "port" => 8007, "check-local" => "disable" ),
197     ( "host" => "127.0.0.1", "port" => 8008, "check-local" => "disable" ),
198     ( "host" => "127.0.0.1", "port" => 8009, "check-local" => "disable" ),
199     ( "host" => "127.0.0.1", "port" => 8010, "check-local" => "disable" ),
200     ( "host" => "127.0.0.1", "port" => 8011, "check-local" => "disable" ),
201     ( "host" => "127.0.0.1", "port" => 8012, "check-local" => "disable" ),
202     ( "host" => "127.0.0.1", "port" => 8013, "check-local" => "disable" ),
203     ( "host" => "127.0.0.1", "port" => 8014, "check-local" => "disable" ),
204     ( "host" => "127.0.0.1", "port" => 8015, "check-local" => "disable" ),
205     ( "host" => "127.0.0.1", "port" => 8016, "check-local" => "disable" ),
206     ( "host" => "127.0.0.1", "port" => 8017, "check-local" => "disable" ),
207     ( "host" => "127.0.0.1", "port" => 8018, "check-local" => "disable" ),
208     ( "host" => "127.0.0.1", "port" => 8019, "check-local" => "disable" ),
209     ( "host" => "127.0.0.1", "port" => 8020, "check-local" => "disable" ),
210     ( "host" => "127.0.0.1", "port" => 8021, "check-local" => "disable" ),
211     ( "host" => "127.0.0.1", "port" => 8022, "check-local" => "disable" ),
212     ( "host" => "127.0.0.1", "port" => 8023, "check-local" => "disable" ),
213     ( "host" => "127.0.0.1", "port" => 8024, "check-local" => "disable" ),
214     ( "host" => "127.0.0.1", "port" => 8025, "check-local" => "disable" )
215   ),
216   ".namefinder" => (
217     ( "host" => "127.0.0.1", "port" => 8026, "check-local" => "disable" ),
218     ( "host" => "127.0.0.1", "port" => 8027, "check-local" => "disable" ),
219     ( "host" => "127.0.0.1", "port" => 8028, "check-local" => "disable" ),
220     ( "host" => "127.0.0.1", "port" => 8029, "check-local" => "disable" )
221   ),
222   ".geonames" => (
223     ( "host" => "127.0.0.1", "port" => 8030, "check-local" => "disable" ),
224     ( "host" => "127.0.0.1", "port" => 8031, "check-local" => "disable" ),
225     ( "host" => "127.0.0.1", "port" => 8032, "check-local" => "disable" ),
226     ( "host" => "127.0.0.1", "port" => 8033, "check-local" => "disable" )
227   ),
228   ".api" => (
229     ( "host" => "127.0.0.1", "port" => 8034, "check-local" => "disable" ),
230     ( "host" => "127.0.0.1", "port" => 8035, "check-local" => "disable" ),
231     ( "host" => "127.0.0.1", "port" => 8036, "check-local" => "disable" ),
232     ( "host" => "127.0.0.1", "port" => 8037, "check-local" => "disable" ),
233     ( "host" => "127.0.0.1", "port" => 8038, "check-local" => "disable" ),
234     ( "host" => "127.0.0.1", "port" => 8039, "check-local" => "disable" ),
235     ( "host" => "127.0.0.1", "port" => 8040, "check-local" => "disable" ),
236     ( "host" => "127.0.0.1", "port" => 8041, "check-local" => "disable" ),
237     ( "host" => "127.0.0.1", "port" => 8042, "check-local" => "disable" ),
238     ( "host" => "127.0.0.1", "port" => 8043, "check-local" => "disable" ),
239     ( "host" => "127.0.0.1", "port" => 8044, "check-local" => "disable" ),
240     ( "host" => "127.0.0.1", "port" => 8045, "check-local" => "disable" ),
241     ( "host" => "127.0.0.1", "port" => 8046, "check-local" => "disable" ),
242     ( "host" => "127.0.0.1", "port" => 8047, "check-local" => "disable" ),
243     ( "host" => "127.0.0.1", "port" => 8048, "check-local" => "disable" )
244   ),
245   ".bulkapi" => (
246     ( "host" => "10.0.0.10", "port" => 8000, "check-local" => "disable" ),
247     ( "host" => "10.0.0.11", "port" => 8000, "check-local" => "disable" ),
248     ( "host" => "10.0.0.12", "port" => 8000, "check-local" => "disable" ),
249     ( "host" => "10.0.0.10", "port" => 8001, "check-local" => "disable" ),
250     ( "host" => "10.0.0.11", "port" => 8001, "check-local" => "disable" ),
251     ( "host" => "10.0.0.12", "port" => 8001, "check-local" => "disable" ),
252     ( "host" => "10.0.0.10", "port" => 8002, "check-local" => "disable" ),
253     ( "host" => "10.0.0.11", "port" => 8002, "check-local" => "disable" ),
254     ( "host" => "10.0.0.12", "port" => 8002, "check-local" => "disable" ),
255     ( "host" => "10.0.0.10", "port" => 8003, "check-local" => "disable" ),
256     ( "host" => "10.0.0.11", "port" => 8003, "check-local" => "disable" ),
257     ( "host" => "10.0.0.12", "port" => 8003, "check-local" => "disable" ),
258     ( "host" => "10.0.0.10", "port" => 8004, "check-local" => "disable" ),
259     ( "host" => "10.0.0.11", "port" => 8004, "check-local" => "disable" ),
260     ( "host" => "10.0.0.12", "port" => 8004, "check-local" => "disable" ),
261     ( "host" => "10.0.0.10", "port" => 8005, "check-local" => "disable" ),
262     ( "host" => "10.0.0.11", "port" => 8005, "check-local" => "disable" ),
263     ( "host" => "10.0.0.12", "port" => 8005, "check-local" => "disable" ),
264     ( "host" => "10.0.0.10", "port" => 8006, "check-local" => "disable" ),
265     ( "host" => "10.0.0.11", "port" => 8006, "check-local" => "disable" ),
266     ( "host" => "10.0.0.12", "port" => 8006, "check-local" => "disable" ),
267     ( "host" => "10.0.0.10", "port" => 8007, "check-local" => "disable" ),
268     ( "host" => "10.0.0.11", "port" => 8007, "check-local" => "disable" ),
269     ( "host" => "10.0.0.12", "port" => 8007, "check-local" => "disable" ),
270     ( "host" => "10.0.0.10", "port" => 8008, "check-local" => "disable" ),
271     ( "host" => "10.0.0.11", "port" => 8008, "check-local" => "disable" ),
272     ( "host" => "10.0.0.12", "port" => 8008, "check-local" => "disable" ),
273     ( "host" => "10.0.0.10", "port" => 8009, "check-local" => "disable" ),
274     ( "host" => "10.0.0.11", "port" => 8009, "check-local" => "disable" ),
275     ( "host" => "10.0.0.12", "port" => 8009, "check-local" => "disable" ),
276     ( "host" => "10.0.0.10", "port" => 8010, "check-local" => "disable" ),
277     ( "host" => "10.0.0.11", "port" => 8010, "check-local" => "disable" ),
278     ( "host" => "10.0.0.12", "port" => 8010, "check-local" => "disable" ),
279   ),
280   ".tah" => (
281     ( "host" => "10.0.0.10", "port" => 8011, "check-local" => "disable" ),
282     ( "host" => "10.0.0.11", "port" => 8011, "check-local" => "disable" ),
283     ( "host" => "10.0.0.12", "port" => 8011, "check-local" => "disable" )
284   )
285 )