server {
listen 443;
server_name www.test.cc test.cc;
ssl on;
ssl_certificate /etc/letsencrypt/live/test.cc/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/letsencrypt/live/test.cc/privkey.pem; # managed by Certbot
ssl_session_timeout 5m;
ssl_protocols SSLv3 TLSv1 TLSv1.1 TLSv1.2;
#ssl_ciphers "HIGH:!aNULL:!MD5 or HIGH:!aNULL:!MD5:!3DES";
ssl_ciphers "ECDHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-RSA-AES256:AES128-SHA:AES256-SHA:RC4-SHA:DES-CBC3-SHA:RC4-MD5";
ssl_prefer_server_ciphers on;
gzip on;
gzip_buffers 32 4K;
gzip_comp_level 4;
gzip_min_length 1k;
gzip_types text/plain application/x-javascript text/css application/xml text/javascript application/x-httpd-php image/bmp application/x-bmp image/x-ms-bmp application/vnd.ms-fontobject font/ttf font/opentype font/x-woff application/octet-stream application/json application/javascript font/woff2;
gzip_disable "MSIE [1-6]\.";
gzip_vary off;
location /api {
proxy_pass http://127.0.0.1:8080; # 后台服务
}
location / {
root /root/test/HTML; # 静态文件的目录
index index.html;
}
location = /index.html {
root /root/test/HTML; # 静态文件的目录
expires -1;
}
# return 404;
}
前后端分离的nginx配置
最新推荐文章于 2025-04-28 13:58:23 发布