16,nginx证书跳转
2019-02-15 本文已影响1人
滔滔逐浪
nginx.conf配置:
server {
#跳转
listen 80;
server_name www.xx.com; #1,先做80端口的跳转
rewrite ^ https://$http_host$request_uri? permanent;
}
server {
#平台后台 SSL
listen 443 ssl;
server_name www.xx.com; #2,做ssl的跳转
location / {
proxy_pass http://sd-platform/manage/;
}
#ssl on;
ssl_certificate /etc/nginx/sd-conf.d/ssl/99yl.me.crt; #证书的地址(只要修改证书的名称和地址就可以 /etc/nginx/sd-conf.d/ssl/99yl.me.crt;)
ssl_certificate_key /etc/nginx/sd-conf.d/ssl/99yl.me.key; #证书的地址(只要修改证书的名称和地址就可以 /etc/nginx/sd-conf.d/ssl/99yl.me.crt;)
ssl_session_timeout 5m;
ssl_protocols SSLv2 SSLv3 TLSv1;
ssl_ciphers ALL:!ADH:!EXPORT56:RC4+RSA:+HIGH:+MEDIUM:+LOW:+SSLv2:+EXP;
ssl_prefer_server_ciphers on;
}