workspace-v1/projects/erp-suite/nginx/erp.conf
Adrian Flores Cortes 967ab360bb Initial commit: Workspace v1 with 3-layer architecture
Structure:
- control-plane/: Registries, SIMCO directives, CI/CD templates
- projects/: Gamilit, ERP-Suite, Trading-Platform, Betting-Analytics
- shared/: Libs catalog, knowledge-base

Key features:
- Centralized port, domain, database, and service registries
- 23 SIMCO directives + 6 fundamental principles
- NEXUS agent profiles with delegation rules
- Validation scripts for workspace integrity
- Dockerfiles for all services
- Path aliases for quick reference

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2025-12-23 00:35:19 -06:00

131 lines
4.8 KiB
Plaintext

# =============================================================================
# ERP-SUITE - Nginx Configuration
# =============================================================================
# Copiar a: /etc/nginx/conf.d/erp.conf
# =============================================================================
# ===========================================================================
# UPSTREAMS
# ===========================================================================
# ERP-Core
upstream erp_core_frontend { server 127.0.0.1:3010; keepalive 32; }
upstream erp_core_backend { server 127.0.0.1:3011; keepalive 32; }
# Verticales
upstream erp_construccion_frontend { server 127.0.0.1:3020; keepalive 32; }
upstream erp_construccion_backend { server 127.0.0.1:3021; keepalive 32; }
upstream erp_vidrio_frontend { server 127.0.0.1:3030; keepalive 32; }
upstream erp_vidrio_backend { server 127.0.0.1:3031; keepalive 32; }
upstream erp_mecanicas_frontend { server 127.0.0.1:3040; keepalive 32; }
upstream erp_mecanicas_backend { server 127.0.0.1:3041; keepalive 32; }
upstream erp_retail_frontend { server 127.0.0.1:3050; keepalive 32; }
upstream erp_retail_backend { server 127.0.0.1:3051; keepalive 32; }
upstream erp_clinicas_frontend { server 127.0.0.1:3060; keepalive 32; }
upstream erp_clinicas_backend { server 127.0.0.1:3061; keepalive 32; }
upstream erp_pos_frontend { server 127.0.0.1:3070; keepalive 32; }
upstream erp_pos_backend { server 127.0.0.1:3071; keepalive 32; }
# ===========================================================================
# HTTP -> HTTPS REDIRECT
# ===========================================================================
server {
listen 80;
server_name erp.isem.dev api.erp.isem.dev
construccion.erp.isem.dev api.construccion.erp.isem.dev
vidrio.erp.isem.dev api.vidrio.erp.isem.dev
mecanicas.erp.isem.dev api.mecanicas.erp.isem.dev
retail.erp.isem.dev api.retail.erp.isem.dev
clinicas.erp.isem.dev api.clinicas.erp.isem.dev
pos.erp.isem.dev api.pos.erp.isem.dev;
return 301 https://$server_name$request_uri;
}
# ===========================================================================
# ERP-CORE
# ===========================================================================
server {
listen 443 ssl http2;
server_name erp.isem.dev;
ssl_certificate /etc/letsencrypt/live/isem.dev/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/isem.dev/privkey.pem;
location / {
proxy_pass http://erp_core_frontend;
proxy_http_version 1.1;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
}
server {
listen 443 ssl http2;
server_name api.erp.isem.dev;
ssl_certificate /etc/letsencrypt/live/isem.dev/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/isem.dev/privkey.pem;
location / {
proxy_pass http://erp_core_backend;
proxy_http_version 1.1;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
location /health {
proxy_pass http://erp_core_backend/health;
access_log off;
}
}
# ===========================================================================
# CONSTRUCCION
# ===========================================================================
server {
listen 443 ssl http2;
server_name construccion.erp.isem.dev;
ssl_certificate /etc/letsencrypt/live/isem.dev/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/isem.dev/privkey.pem;
location / {
proxy_pass http://erp_construccion_frontend;
proxy_http_version 1.1;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
}
server {
listen 443 ssl http2;
server_name api.construccion.erp.isem.dev;
ssl_certificate /etc/letsencrypt/live/isem.dev/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/isem.dev/privkey.pem;
location / {
proxy_pass http://erp_construccion_backend;
proxy_http_version 1.1;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
}
# ===========================================================================
# (Agregar más verticales según se activen)
# ===========================================================================