File: //etc/nginx/conf.d/users/cipherdesigns.conf
proxy_cache_path /var/cache/ea-nginx/proxy/cipherdesigns levels=1:2 keys_zone=cipherdesigns:10m inactive=60m;
#### main domain for cipherdesigns ##
server {
    server_name cipherdesigns.in www.cipherdesigns.in mail.cipherdesigns.in cipherdesigns.in.103-113-67-32.cprapid.com www.cipherdesigns.in.103-113-67-32.cprapid.com mail.cipherdesigns.in.103-113-67-32.cprapid.com;
    listen 80;
    listen [::]:80;
    include conf.d/includes-optional/cloudflare.conf;
    
    set $CPANEL_APACHE_PROXY_PASS $scheme://apache_backend_${scheme}_103_113_67_34;
    # For includes:
    set $CPANEL_APACHE_PROXY_IP 103.113.67.34;
    set $CPANEL_APACHE_PROXY_SSL_IP 103.113.67.34;
    set $CPANEL_SERVICE_SUBDOMAIN 0;
    set $CPANEL_PROXY_CACHE cipherdesigns;
    set $CPANEL_SKIP_PROXY_CACHING 0;
    
    listen 443 ssl;
    listen [::]:443 ssl;
    http2 off;
    ssl_certificate /var/cpanel/ssl/apache_tls/cipherdesigns.in/combined;
    ssl_certificate_key /var/cpanel/ssl/apache_tls/cipherdesigns.in/combined;
        
    ssl_protocols TLSv1.2 TLSv1.3;
    proxy_ssl_protocols TLSv1.2 TLSv1.3;
    ssl_prefer_server_ciphers on;
    ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
    proxy_ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
            
    root "/home/cipherdesigns/public_html";
    location /cpanelwebcall {
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass http://127.0.0.1:2082/cpanelwebcall;
    }
    location /Microsoft-Server-ActiveSync {
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass http://127.0.0.1:2090/Microsoft-Server-ActiveSync;
    }
    location = /favicon.ico {
        allow all;
        log_not_found off;
        access_log off;
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location = /robots.txt {
        allow all;
        log_not_found off;
        access_log off;
        include conf.d/includes-optional/cpanel-proxy.conf;
	proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location / {
        proxy_cache $CPANEL_PROXY_CACHE;
        proxy_no_cache $CPANEL_SKIP_PROXY_CACHING;
        proxy_cache_bypass $CPANEL_SKIP_PROXY_CACHING;
        proxy_cache_valid 200 301 302 60m;
        proxy_cache_valid 404 1m;
        proxy_cache_use_stale error timeout http_429 http_500 http_502 http_503 http_504;
        proxy_cache_background_update on;
        proxy_cache_revalidate on;
        proxy_cache_min_uses 1;
        proxy_cache_lock off;
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
            
    include conf.d/server-includes/*.conf;
    include conf.d/users/cipherdesigns/*.conf;
    include conf.d/users/cipherdesigns/cipherdesigns.in/*.conf;
}
server {
    listen 80;
    listen [::]:80;
    listen 443 ssl;
    listen [::]:443 ssl;
    http2 off;
    ssl_certificate /var/cpanel/ssl/apache_tls/cipherdesigns.in/combined;
    ssl_certificate_key /var/cpanel/ssl/apache_tls/cipherdesigns.in/combined;
    server_name  autodiscover.cipherdesigns.in cpanel.cipherdesigns.in cpcalendars.cipherdesigns.in cpcontacts.cipherdesigns.in webdisk.cipherdesigns.in webmail.cipherdesigns.in;
    include conf.d/includes-optional/cloudflare.conf;
    
    set $CPANEL_APACHE_PROXY_PASS $scheme://apache_backend_${scheme}_103_113_67_34;
    # For includes:
    set $CPANEL_APACHE_PROXY_IP 103.113.67.34;
    set $CPANEL_APACHE_PROXY_SSL_IP 103.113.67.34;
    set $CPANEL_SERVICE_SUBDOMAIN 1;
    location /.well-known/cpanel-dcv {
        root "/home/cipherdesigns/public_html";
        disable_symlinks if_not_owner;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location /.well-known/pki-validation {
        root "/home/cipherdesigns/public_html";
        disable_symlinks if_not_owner;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location /.well-known/acme-challenge {
        root "/home/cipherdesigns/public_html";
        disable_symlinks if_not_owner;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location / {
        # Force https for service subdomains
        if ($scheme = http) {
            return 301 https://$host$request_uri;
        }
        # no cache
        proxy_cache off;
        proxy_no_cache 1;
        proxy_cache_bypass 1;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
}
#### addon domains for cipherdesigns ##
server {
    server_name kidsemporia.com.cipherdesigns.in www.kidsemporia.com.cipherdesigns.in kidsemporia.com www.kidsemporia.com mail.kidsemporia.com;
    listen 80;
    listen [::]:80;
    include conf.d/includes-optional/cloudflare.conf;
    
    set $CPANEL_APACHE_PROXY_PASS $scheme://apache_backend_${scheme}_103_113_67_34;
    # For includes:
    set $CPANEL_APACHE_PROXY_IP 103.113.67.34;
    set $CPANEL_APACHE_PROXY_SSL_IP 103.113.67.34;
    set $CPANEL_SERVICE_SUBDOMAIN 0;
    set $CPANEL_PROXY_CACHE cipherdesigns;
    set $CPANEL_SKIP_PROXY_CACHING 0;
    
    listen 443 ssl;
    listen [::]:443 ssl;
    http2 off;
    ssl_certificate /var/cpanel/ssl/apache_tls/kidsemporia.com.cipherdesigns.in/combined;
    ssl_certificate_key /var/cpanel/ssl/apache_tls/kidsemporia.com.cipherdesigns.in/combined;
        
    ssl_protocols TLSv1.2 TLSv1.3;
    proxy_ssl_protocols TLSv1.2 TLSv1.3;
    ssl_prefer_server_ciphers on;
    ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
    proxy_ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256;
            
    root "/home/cipherdesigns/public_html/kidsemporia";
    location /cpanelwebcall {
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass http://127.0.0.1:2082/cpanelwebcall;
    }
    location /Microsoft-Server-ActiveSync {
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass http://127.0.0.1:2090/Microsoft-Server-ActiveSync;
    }
    location = /favicon.ico {
        allow all;
        log_not_found off;
        access_log off;
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location = /robots.txt {
        allow all;
        log_not_found off;
        access_log off;
        include conf.d/includes-optional/cpanel-proxy.conf;
	proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location / {
        proxy_cache $CPANEL_PROXY_CACHE;
        proxy_no_cache $CPANEL_SKIP_PROXY_CACHING;
        proxy_cache_bypass $CPANEL_SKIP_PROXY_CACHING;
        proxy_cache_valid 200 301 302 60m;
        proxy_cache_valid 404 1m;
        proxy_cache_use_stale error timeout http_429 http_500 http_502 http_503 http_504;
        proxy_cache_background_update on;
        proxy_cache_revalidate on;
        proxy_cache_min_uses 1;
        proxy_cache_lock off;
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
            
    include conf.d/server-includes/*.conf;
    include conf.d/users/cipherdesigns/*.conf;
    include conf.d/users/cipherdesigns/kidsemporia.com.cipherdesigns.in/*.conf;
}
server {
    listen 80;
    listen [::]:80;
    listen 443 ssl;
    listen [::]:443 ssl;
    http2 off;
    ssl_certificate /var/cpanel/ssl/apache_tls/kidsemporia.com.cipherdesigns.in/combined;
    ssl_certificate_key /var/cpanel/ssl/apache_tls/kidsemporia.com.cipherdesigns.in/combined;
    server_name  autodiscover.kidsemporia.com cpanel.kidsemporia.com cpcalendars.kidsemporia.com cpcontacts.kidsemporia.com webdisk.kidsemporia.com webmail.kidsemporia.com;
    include conf.d/includes-optional/cloudflare.conf;
    
    set $CPANEL_APACHE_PROXY_PASS $scheme://apache_backend_${scheme}_103_113_67_34;
    # For includes:
    set $CPANEL_APACHE_PROXY_IP 103.113.67.34;
    set $CPANEL_APACHE_PROXY_SSL_IP 103.113.67.34;
    set $CPANEL_SERVICE_SUBDOMAIN 1;
    location /.well-known/cpanel-dcv {
        root "/home/cipherdesigns/public_html/kidsemporia";
        disable_symlinks if_not_owner;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location /.well-known/pki-validation {
        root "/home/cipherdesigns/public_html/kidsemporia";
        disable_symlinks if_not_owner;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location /.well-known/acme-challenge {
        root "/home/cipherdesigns/public_html/kidsemporia";
        disable_symlinks if_not_owner;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
    location / {
        # Force https for service subdomains
        if ($scheme = http) {
            return 301 https://$host$request_uri;
        }
        # no cache
        proxy_cache off;
        proxy_no_cache 1;
        proxy_cache_bypass 1;
        # pass to Apache
        include conf.d/includes-optional/cpanel-proxy.conf;
        proxy_pass $CPANEL_APACHE_PROXY_PASS;
    }
}