配置SSL证书

作者: chuan_bai | 来源:发表于2018-11-23 09:58 被阅读5次

    安装nginx

    $ apt-get update // 更新软件
    
    $ apt-get install nginx // 安装nginx
    

    nginx配置

    到 /etc/nginx/nginx.conf 路径下,对原有的配置做修改

    //监听443端口
    
    server {
            listen       443 ssl;
            server_name www.***.com;
            ssl_certificate      /opt/ssl/***.crt;     //证书crt文件
            ssl_certificate_key  /opt/ssl/***.key;    //证书key
    
            ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
            ssl_session_cache    shared:SSL:1m;
            ssl_session_timeout  5m;
            ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
            ssl_prefer_server_ciphers  on;
    
           location / {
               proxy_pass http://127.0.0.1:9000;
    
           }
        }
    
    //监听80端口
    server {
            listen 80;
            server_name  ailoulin.com;
    
            location / {
                    proxy_pass http://127.0.0.1:9000;
                    }
    }
    

    重启 nginx

    nginx -s reload
    

    相关文章

      网友评论

        本文标题:配置SSL证书

        本文链接:https://www.haomeiwen.com/subject/qehsuftx.html