Skip to content

Commit

Permalink
GITBOOK-50: change request with no subject merged in GitBook
Browse files Browse the repository at this point in the history
  • Loading branch information
stefanwerfling authored and gitbook-bot committed Aug 31, 2023
1 parent bec2da1 commit f56ee19
Show file tree
Hide file tree
Showing 2 changed files with 15 additions and 0 deletions.
Binary file added .gitbook/assets/portflow.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
15 changes: 15 additions & 0 deletions index/configurations/listen.md
Original file line number Diff line number Diff line change
Expand Up @@ -58,3 +58,18 @@ After the initial installation, you can view the automatically installed listene
Save causes an immediate reload of nginx. Existing connections are kept as if running the command: nginx -s reload
{% endhint %}

## Listen flow

The following graphic should help to understand the list process:

<figure><img src="../../.gitbook/assets/portflow.png" alt=""><figcaption><p>Portsflow</p></figcaption></figure>

<mark style="background-color:yellow;">Port 5333, 80, 443 Listening</mark> on the network from the host (as a bridge, port forwarding to the Docker container). &#x20;

There the Nginx first <mark style="background-color:orange;">"</mark>[<mark style="background-color:orange;">IP access check"</mark>](ip-access.md) whether the IPs have access rights. Then the streams (TCP/UDP) are <mark style="background-color:orange;">split into their protocol</mark> (SSL/HTTP/etc.) and <mark style="background-color:orange;">split into</mark> [<mark style="background-color:orange;">domains</mark>](domains.md) for forwarded to a destination. Should not specify an external destination. The internal ports for the <mark style="background-color:green;">HTTP and HTTPS server</mark> are specified as standard. They perform a <mark style="background-color:green;">"proxy reserve"</mark> and request a route too <mark style="background-color:blue;">internal or external HTTP/HTTPS server</mark>.&#x20;



{% hint style="info" %}
The internal ports are only accessible in the Docker network and are securely shielded from the public network. It must pass stream ports 5333, 80, 443 via a query.
{% endhint %}

0 comments on commit f56ee19

Please sign in to comment.