1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25
   |  ~# cat /etc/nginx/conf.d/website.conf server {         listen      443 ssl;         server_name abc.abc.ltd;
          ssl_certificate /root/cert/abc.abc.ltd.pem;         ssl_certificate_key  /root/cert/abc.abc.ltd.key;         ssl_session_timeout  5m;    #缓存有效期         ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;    #加密算法         ssl_protocols TLSv1 TLSv1.1 TLSv1.2;    #安全链接可选的加密协议         ssl_prefer_server_ciphers on;   #使用服务器端的首选算法
          location / {                 proxy_pass http://127.0.0.1:8080;         }
  }
  server {         listen 80;
          return 301 https://$server_name$request_uri; }
 
 
  |