nginx 配置ssl證書配置檔案
阿新 • • 發佈:2018-12-20
server { listen 443; ssl on; server_name qin.qqlong.top; ssl_certificate /usr/cert/qin.qqlong.top.crt; //你的證書路徑 ssl_certificate_key /usr/cert/qin.qqlong.top.key;//你的證書路徑 ssl_session_timeout 5m; ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; ssl_protocols TLSv1 TLSv1.1 TLSv1.2; ssl_prefer_server_ciphers on; location / { root /var/www/html/ceshi; index index.php index.html; } location ~ \.php$ { fastcgi_pass 127.0.0.1:9000; fastcgi_index index.php; fastcgi_param SCRIPT_FILENAME /var/www/html/ceshi$fastcgi_script_name; include fastcgi_params; } }
http自動跳轉https,配置檔案新增
server {
listen 80;
server_name qin.qqlong.top;
rewrite ^(.*) https://$server_name$1 permanent;
}