阿里云购买免费ssl证书:https://jingyan.baidu.com/article/a3aad71aeceea0b1fb00969c.html
如果是阿里云买的域名,记得打钩
nginx配置ssl:ssl控制台---》订单列表-》点下载按钮--》此处阿里云有提供示例
server {
listen 443;
server_name localhost;
ssl on;
root html;
index index.html index.htm;
ssl_certificate cert/1534660828745.pem;
ssl_certificate_key cert/1534660828745.key;
ssl_session_timeout 5m;
ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_prefer_server_ciphers on;
location / {
root html;
index index.html index.htm;
}
}
server_name / ssl_certificate / ssl_certificate_key 替换成真实的
多端口共用:
假设有8001,8002两个端口
location /xxx{
proxy_pass http://domain.com:8001/; # 最后的斜杠不能省
proxy_redirect off;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
}
location /yyy{
proxy_pass http://domain.com:8002/; # 最后的斜杠不能省
proxy_redirect off;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
}
#8001,8002端口也要配好
server {
listen 8001;
server_name domain.com 11.12.11.22; #域名或ip
#省略
}
server {
listen 8002;
server_name domain.com 11.12.11.22; #域名或ip
#省略
}