nginx 配置记录

cat nginx.conf

worker_processes auto;
events {
worker_connections 1024;
}
http {
include mime.types;
default_type application/octet-stream;
sendfile on;
keepalive_timeout 65;
geo $remote_addr $ip_whitelist {
default 0;
include ip_white.conf;
}
include conf.d/*.conf;
}

[root@server10-6 nginx]# cat conf/conf.d/appcc.conf|grep -v '#'|grep -v '^$'
upstream appcc {
ip_hash;
server 172.16.10.14:8100;
server 172.16.10.15:8100;
}
server {
listen 80;
server_name appcc.pispower.com;
rewrite ^(.*)$ https://${server_name}$1 permanent;
}
server {
listen 443;
server_name appcc.pispower.com;
ssl on;
ssl_certificate /home/clouder/vs/program/nginx/conf/ssl_key/pispower.crt;
ssl_certificate_key /home/clouder/vs/program/nginx/conf/ssl_key/pispower.key;
ssl_session_timeout 5m;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_ciphers AESGCM:ALL:!DH:!EXPORT:!RC4:+HIGH:!MEDIUM:!LOW:!aNULL:!eNULL;
location / {
proxy_pass http://appcc;
root html;
index index.html index.htm;
}
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root html;
}
}
server {
listen 80;
server_name appcc.cloudak47.com;
rewrite ^(.*)$ https://${server_name}$1 permanent;
}
server {
listen 443;
server_name appcc.cloudak47.com;
ssl on;
ssl_certificate /home/clouder/vs/program/nginx/conf/ssl_key/cloudak47.crt;
ssl_certificate_key /home/clouder/vs/program/nginx/conf/ssl_key/cloudak47.key;
ssl_session_timeout 5m;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_ciphers AESGCM:ALL:!DH:!EXPORT:!RC4:+HIGH:!MEDIUM:!LOW:!aNULL:!eNULL;
location / {
proxy_pass http://appcc;
root html;
index index.html index.htm;
}
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root html;
}
}

[root@server10-6 nginx]# cat conf/ip_white.conf
183.62.15.118 1;
183.62.15.114 1;
172.16.10.12 1;
172.16.32.78 1;
219.132.138.167 1;
219.132.153.210 1;
61.146.164.66 1;

猜你喜欢

转载自www.cnblogs.com/hixiaowei/p/9562262.html
今日推荐