Guides
The reasoning and sources behind every default in the generator.
- Security guideTreat the generated file as a reviewed deployment artifact. It is a safe starting point for common sites, not a complete application security policy. NG...
- Performance tuningNGINX is already efficient with its defaults. A setting is useful when it matches a workload and improves a measured result. Keep a before/after record...
- Operations, containers, and releasesThe web/ directory is the client-only configuration builder (Astro). It is deployed separately as static assets with Wrangler; the UI downloads configur...
- Migration from the old repositoryThe original repository was a 2017 collection of Debian-oriented snippets. The modernized repository has one canonical renderer and full generated profi...
- Benchmarking and validationA configuration is ready when it is accepted by the deployed NGINX build and behaves correctly under the traffic it serves. A higher number from a synth...
- NGINX Open Source research baselineResearch checked: 2026-09-20, updated 2026-10-01 (digest, image modules, OCSP, ACME). This note covers the free, open-source NGINX server. NGINX Plus-on...
- Reverse proxy, workload, runtime image, and generator researchResearch checked on 2026-09-20 and updated on 2026-10-01 for the Astro builder and the TypeScript renderer (schema v2). Sources are upstream NGINX, Dock...