1. 程式人生 > >nginx 配置ssl證書配置檔案

nginx 配置ssl證書配置檔案

server {
	listen 443;
	ssl on;
	server_name qin.qqlong.top;
	ssl_certificate /usr/cert/qin.qqlong.top.crt; //你的證書路徑
    ssl_certificate_key /usr/cert/qin.qqlong.top.key;//你的證書路徑
    ssl_session_timeout 5m;
    ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
    ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
    ssl_prefer_server_ciphers on;
	location / {
		root /var/www/html/ceshi;
		index index.php index.html;
	}

	location ~ \.php$ {
        fastcgi_pass   127.0.0.1:9000;
        fastcgi_index  index.php;
        fastcgi_param  SCRIPT_FILENAME  /var/www/html/ceshi$fastcgi_script_name;
        include        fastcgi_params;
    }
}

http自動跳轉https,配置檔案新增

server {
	listen 80;
	server_name qin.qqlong.top;
	rewrite ^(.*) https://$server_name$1 permanent;
}