1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25
| ~# cat /etc/nginx/conf.d/website.conf server { listen 443 ssl; server_name abc.abc.ltd;
ssl_certificate /root/cert/abc.abc.ltd.pem; ssl_certificate_key /root/cert/abc.abc.ltd.key; ssl_session_timeout 5m; #缓存有效期 ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; #加密算法 ssl_protocols TLSv1 TLSv1.1 TLSv1.2; #安全链接可选的加密协议 ssl_prefer_server_ciphers on; #使用服务器端的首选算法
location / { proxy_pass http://127.0.0.1:8080; }
}
server { listen 80;
return 301 https://$server_name$request_uri; }
|