nginx 做node https证书
server{
listen 80;
server_name gdjle.com www.gdjle.com;
rewrite ^(.*)$ https://$host$1 permanent;
}
server {
listen 443 ssl;
server_name gdjle.com www.gdjle.com;
ssl on;
ssl_certificate /etc/nginx/conf.d/gdjle.com.crt; // 证书公钥
ssl_certificate_key /etc/nginx/conf.d/gdjle.com.key; // 证书私钥
ssl_session_timeout 5m;
ssl_protocols SSLv3 TLSv1 TLSv1.1 TLSv1.2;
ssl_ciphers "HIGH:!aNULL:!MD5 or HIGH:!aNULL:!MD5:!3DES";
ssl_prefer_server_ciphers on;
location / {
proxy_pass http://127.0.0.1:7001; // 这里是node监听的端口
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
}
}