map $http_upgrade $connection_upgrade {
root /var/www/${SUB_DOMAIN}/html;
server_name ${SUB_DOMAIN};
ssl_certificate /etc/letsencrypt/live/${SUB_DOMAIN}/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/letsencrypt/live/${SUB_DOMAIN}/privkey.pem; # managed by Certbot
ssl_protocols SSLv2 SSLv3 TLSv1 TLSv1.1 TLSv1.2;
ssl_ciphers HIGH:!aNULL:!MD5;
ssl_prefer_server_ciphers on;
proxy_pass http://localhost:9944;
proxy_pass_request_headers on;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection $connection_upgrade;