listen 0.0.0.0:443 ssl %HTTP2%; ssl_certificate /etc/letsencrypt/live/%FIRST_SERVER_NAME%/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/%FIRST_SERVER_NAME%/privkey.pem; ssl_protocols TLSv1.3; ssl_prefer_server_ciphers off; ssl_session_tickets off; %STRICT_TRANSPORT_SECURITY%