1.申请证书(公司会有通用证书),将证书上传到/etc/ssl

2.修改Nginx的配置
2.1添加http到https的跳转配置;
server {
listen 80;
server_name portal.mycompany.com;
return 301 https://$http_host$request_uri;
}
2.2 配置SSL证书
在server中添加
server {
#listen 80;
listen 443 ssl;
server_name portal.mycompany.com;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
ssl_certificate /etc/ssl/server.pem;
ssl_certificate_key /etc/ssl/server.key;
3.更改配置重启nginx
cd /usr/local/nginx/sbin
./nginx -s reload
检查配置是否正确
./nginx -t
6372

被折叠的 条评论
为什么被折叠?



