nginx https证书配置
获取到crt和key文件
mkdir /etc/nginx/cert
cp ssl.crt /etc/nginx/cert/ssl.crt
cp ssl.key /etc/nginx/cert/ssl.key
配置nginx
server {
listen 443 ssl;
server_name somedomain.com;
ssl_certificate /etc/nginx/cert/ssl.crt;
ssl_certificate_key /etc/nginx/cert/ssl.key;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_ciphers HIGH:!aNULL:!MD5;
#...
}
server {
listen 80;
server_name somedomain.com;
# 跳转到https
rewrite ^(.*)$ https://$host$1 permanent;
}
重启nginx
nginx -t
nginx -s reload