# =============================================================================
# Nginx Configuration for Bitrix24 MCP Server
# Route: /bitrix/* -> localhost:3009
# =============================================================================
# Upstream for Bitrix24 MCP Server
upstream bitrix_mcp {
server 127.0.0.1:3009;
keepalive 32;
}
# Location block to add to main server config
# location /bitrix/ {
# proxy_pass http://bitrix_mcp/;
# proxy_http_version 1.1;
#
# # WebSocket/SSE support
# proxy_set_header Upgrade $http_upgrade;
# proxy_set_header Connection "upgrade";
#
# # Headers
# proxy_set_header Host $host;
# proxy_set_header X-Real-IP $remote_addr;
# proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
# proxy_set_header X-Forwarded-Proto $scheme;
#
# # Timeouts for long-running connections (SSE)
# proxy_read_timeout 86400;
# proxy_send_timeout 86400;
#
# # Disable buffering for SSE
# proxy_buffering off;
# proxy_cache off;
#
# # CORS headers (if not handled by app)
# add_header 'Access-Control-Allow-Origin' '*' always;
# add_header 'Access-Control-Allow-Methods' 'GET, POST, OPTIONS' always;
# add_header 'Access-Control-Allow-Headers' 'Content-Type, Authorization, Mcp-Session-Id' always;
# }
# Full server block example
server {
listen 80;
server_name mcp.example.com;
# Redirect to HTTPS
return 301 https://$server_name$request_uri;
}
server {
listen 443 ssl http2;
server_name mcp.example.com;
# SSL certificates (adjust paths)
ssl_certificate /etc/letsencrypt/live/mcp.example.com/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/mcp.example.com/privkey.pem;
# SSL settings
ssl_protocols TLSv1.2 TLSv1.3;
ssl_prefer_server_ciphers on;
ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256;
# Email MCP Server
location /email/ {
proxy_pass http://127.0.0.1:3008/;
proxy_http_version 1.1;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection "upgrade";
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_read_timeout 86400;
proxy_send_timeout 86400;
proxy_buffering off;
proxy_cache off;
}
# Bitrix24 MCP Server
location /bitrix/ {
proxy_pass http://127.0.0.1:3009/;
proxy_http_version 1.1;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection "upgrade";
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_read_timeout 86400;
proxy_send_timeout 86400;
proxy_buffering off;
proxy_cache off;
}
# Health check endpoint
location /health {
return 200 'OK';
add_header Content-Type text/plain;
}
}