配置SSL证书
2018-11-23 本文已影响5人
chuan_bai
安装nginx
$ apt-get update // 更新软件
$ apt-get install nginx // 安装nginx
nginx配置
到 /etc/nginx/nginx.conf 路径下,对原有的配置做修改
//监听443端口
server {
listen 443 ssl;
server_name www.***.com;
ssl_certificate /opt/ssl/***.crt; //证书crt文件
ssl_certificate_key /opt/ssl/***.key; //证书key
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_session_cache shared:SSL:1m;
ssl_session_timeout 5m;
ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
ssl_prefer_server_ciphers on;
location / {
proxy_pass http://127.0.0.1:9000;
}
}
//监听80端口
server {
listen 80;
server_name ailoulin.com;
location / {
proxy_pass http://127.0.0.1:9000;
}
}
重启 nginx
nginx -s reload