JAVA和Nginx 教程大全

网站首页 > 精选教程 正文

nginx 配置https(简易版)

wys521 2024-09-08 23:00:56 精选教程 23 ℃ 0 评论

配置文件:/etc/nginx/nginx.conf

html文件:/usr/share/nginx/html

配置文件中配置TLS

  1. 取消“Setting for a TLS enabled server.”部分的注释
  2. 申请SSL证书,和域名相关,在域名服务商处申请
  3. 上传证书到服务器
  4. 修改文中引用加粗部分(abc.xyz是你的真实域名)

# For more information on configuration, see:

# * Official English Documentation: http://nginx.org/en/docs/

# * Official Russian Documentation: http://nginx.org/ru/docs/

user nginx;

worker_processes auto;

error_log /var/log/nginx/error.log;

pid /run/nginx.pid;

# Load dynamic modules. See /usr/share/nginx/README.dynamic.

include /usr/share/nginx/modules/*.conf;

events {

worker_connections 1024;

}

http {

log_format main '$remote_addr - $remote_user [$time_local] "$request" '

'$status $body_bytes_sent "$http_referer" '

'"$http_user_agent" "$http_x_forwarded_for"';

access_log /var/log/nginx/access.log main;

sendfile on;

tcp_nopush on;

tcp_nodelay on;

keepalive_timeout 65;

types_hash_max_size 2048;

include /etc/nginx/mime.types;

default_type application/octet-stream;

# Load modular configuration files from the /etc/nginx/conf.d directory.

# See http://nginx.org/en/docs/ngx_core_module.html#include

# for more information.

include /etc/nginx/conf.d/*.conf;

server {

listen 80 default_server;

listen [::]:80 default_server;

server_name abc.xyz;

root /usr/share/nginx/html;

# 为了能够将http请求重定向到https

rewrite ^(.*)$ https://$server_name$1 permanent;

# Load configuration files for the default server block.

include /etc/nginx/default.d/*.conf;

location / {

}

error_page 404 /404.html;

location = /40x.html {

}

error_page 500 502 503 504 /50x.html;

location = /50x.html {

}

}

# Settings for a TLS enabled server.

server {

listen 443 ssl http2 default_server;

listen [::]:443 ssl http2 default_server;

server_name abc.xyz;

root /usr/share/nginx/html;

ssl on;

ssl_certificate "/etc/pki/nginx/Nginx/1_abc.xyz_bundle.crt";

ssl_certificate_key "/etc/pki/nginx/Nginx/2_abc.xyz.key";

ssl_session_cache shared:SSL:1m;

ssl_session_timeout 10m;

ssl_ciphers HIGH:!aNULL:!MD5;

ssl_prefer_server_ciphers on;

# Load configuration files for the default server block.

include /etc/nginx/default.d/*.conf;

location / {

}

error_page 404 /404.html;

location = /40x.html {

}

error_page 500 502 503 504 /50x.html;

location = /50x.html {

}

}

}

本文暂时没有评论,来添加一个吧(●'◡'●)

欢迎 发表评论:

最近发表
标签列表