配置ssl 步骤
1.下载ssl证书,
2.修改nginx.config
将带
server {
listen 443 ssl;
server_name localhost;
ssl_certificate ../cert/scs1630566114872_pingegui.com_server.crt;//路径相对于config
ssl_certificate_key ../cert/scs1630566114872_pingegui.com_server.key;
ssl_session_cache shared:SSL:1m;
ssl_session_timeout 5m;
ssl_ciphers HIGH:!aNULL:!MD5;
ssl_prefer_server_ciphers on;
location / {
root /usr/www/pingegui.com;
index index.html index.htm;
}
}
注释掉
3.修改ssl路径
4.location / {
root html 改成-》 root /usr/www/pingegui.com;
index index.html index.htm;
}
5.安装ngnix的ssl模块
1)find -name configure 找到config模块 与nginx安装包位置 或者/usr/local/nginx/sbin/nginx -V 找到安装路径
2)/usr/local/nginx/sbin/nginx -V 查看配置 查看configure arguments:后边有没有值,如果有,就复制下来。
3)./configure --原来有的模块(如果有的话) --with-http_ssl_module
4)make
5)cp /usr/local/nginx/sbin/nginx /usr/local/nginx/sbin/nginx.bak 然后备份原有已安装好的nginx
6)停止nginx进程 ps -A 找到所有Nginx的进程。 Kill 1234
7)然后将刚刚编译好的nginx覆盖掉原有的nginx(这个时候nginx要停止状态) cp ./objs/nginx /usr/local/nginx/sbin/
8) cd /usr/local/nginx/sbin [root@hecs-217383 sbin]# ./nginx -s reload 重启nginx
附图:
![](https://img.haomeiwen.com/i15085663/f0f412c0ee42838f.png)
![](https://img.haomeiwen.com/i15085663/dc3a8f18679bf5ca.png)
![](https://img.haomeiwen.com/i15085663/e95999b78aa1e686.png)
![](https://img.haomeiwen.com/i15085663/2288ef9b898f08b9.png)
![](https://img.haomeiwen.com/i15085663/87c8687fadfa0973.png)
网友评论