diff --git a/roles/setup-http-site-proxy/templates/apache-docker-proxy-site.j2 b/roles/setup-http-site-proxy/templates/apache-docker-proxy-site.j2
index 022b0e2..a57db73 100644
--- a/roles/setup-http-site-proxy/templates/apache-docker-proxy-site.j2
+++ b/roles/setup-http-site-proxy/templates/apache-docker-proxy-site.j2
@@ -18,9 +18,9 @@
     </ifmodule>
 </VirtualHost>
 
-<IfFile {{dehydrated_certs_dir}/{{ site_name }}/cert.pem>
-<IfFile {{dehydrated_certs_dir}/{{ site_name }}/privkey.pem>
-<IfFile {{dehydrated_certs_dir}/{{ site_name }}/chain.pem>
+<IfFile {{dehydrated_certs_dir}}/{{ site_name }}/cert.pem>
+<IfFile {{dehydrated_certs_dir}}/{{ site_name }}/privkey.pem>
+<IfFile {{dehydrated_certs_dir}}/{{ site_name }}/chain.pem>
 {% if 'address' in ansible_default_ipv6 %}
 <VirtualHost {{ ansible_default_ipv4.address }}:443 [{{ ansible_default_ipv6.address }}]:443>
 {% else %}
@@ -35,11 +35,11 @@
 
     SSLEngine on
     SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown
-    SSLCertificateFile    {{dehydrated_certs_dir}/{{ site_name }}/cert.pem
-    SSLCertificateKeyFile {{dehydrated_certs_dir}/{{ site_name }}/privkey.pem
-    SSLCertificateChainFile {{dehydrated_certs_dir}/{{ site_name }}/chain.pem
+    SSLCertificateFile    {{dehydrated_certs_dir}}/{{ site_name }}/cert.pem
+    SSLCertificateKeyFile {{dehydrated_certs_dir}}/{{ site_name }}/privkey.pem
+    SSLCertificateChainFile {{dehydrated_certs_dir}}/{{ site_name }}/chain.pem
 
-<% if proxy_port %>
+{% if proxy_port %}
     AllowEncodedSlashes NoDecode
     ProxyPass / http://{{ backend_host | default("localhost") }}:{{proxy_port}}/ nocanon
     RequestHeader set "X-Forwarded-Proto" expr=%{REQUEST_SCHEME}
@@ -52,9 +52,9 @@
         RewriteCond %{HTTP:Connection} upgrade [NC]
         RewriteRule ^/?(.*) "ws://{{ backend_host | default("localhost") }}:{{ proxy_port }}/$1" [P,L]
     </ifmodule>
-<% else %>
+{% else %}
     Redirect 404 /
-< %endif %>
+{% endif %}
 </VirtualHost>
 </IfFile>
 </IfFile>