--- title: "NGINX SSL proxy" description: "NGINX Home Assistant SSL proxy." --- Sets up an SSL proxy with NGINX and redirect port 80 to 443. Make sure you have generated a certificate before you start this add-on. In the `http` section of the `configuration.yaml` file remove `ssl_certificate`, `ssl_key` and `server_port` and don't enter the port in the `base_url` to avoid an HTTP 502 error. ```json { "domain": "home.example.com", "certfile": "fullchain.pem", "keyfile": "privkey.pem", "hsts": "max-age=31536000; includeSubDomains", "customize": { "active": false, "default": "nginx_proxy_default*.conf", "servers": "nginx_proxy/*.conf" }, "cloudflare": false } ``` {% configuration %} domain: description: The Domain to use for the proxy. required: true type: string certfile: description: The certificate file to use in the `/ssl` directory. required: true type: string keyfile: description: Private key file to use in the `/ssl` directory. required: true type: string hsts: description: Value for the [`Strict-Transport-Security`](https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Strict-Transport-Security) HTTP header to send. If empty, the header is not sent. required: true type: string customize: description: If true, additional NGINX configuration files for the default server and additional servers are read from files in the `/share` directory specified by the `default` and `servers` variables. required: false type: boolean default: false cloudflare: description: If enabled, configure Nginx with a list of IP addresses directly from Cloudflare that will be used for `set_real_ip_from` directive Nginx config. required: false type: boolean default: false {% endconfiguration %}