nginx 配置https

一:上传ssl证书

将ssl的crt文件和key文件上传到nginx目录下 例如/etc/nginx/ssl

二:配置https

server
{
    listen 80;
    listen 443 ssl;

    server_name xxx;
    index index.html index.htm index.php default.html default.htm default.php;

    root  /xxx;

    ssl_certificate /etc/nginx/ssl/crt文件;
    ssl_certificate_key /etc/nginx/ssl/key文件;
    ssl_session_cache shared:SSL:1m;
    ssl_session_timeout 5m;
    ssl_ciphers EECDH+CHACHA20:EECDH+CHACHA20-draft:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;
    ssl_protocols TLSv1.1 TLSv1.2 TLSv1.3;
    ssl_prefer_server_ciphers on;
    //下面的配置省略
}

你可能感兴趣的:(nginxssl)