LNMP配置

user  www www;

worker_processes auto;

error_log  /home/wwwlogs/nginx_error.log  crit;

pid        /usr/local/nginx/logs/nginx.pid;

#Specifies the value for maximum file descriptors that can be opened by this process.
worker_rlimit_nofile 51200;

events
    {
        use epoll;
        worker_connections 51200;
        multi_accept on;
    }

http
    {
        include       mime.types;
        default_type  application/octet-stream;

        server_names_hash_bucket_size 128;
        client_header_buffer_size 32k;
        large_client_header_buffers 4 32k;
        client_max_body_size 50m;

        sendfile   on;
        tcp_nopush on;

        keepalive_timeout 60;

        tcp_nodelay on;

        fastcgi_connect_timeout 300;
        fastcgi_send_timeout 300;
        fastcgi_read_timeout 300;
        fastcgi_buffer_size 64k;
        fastcgi_buffers 4 64k;
        fastcgi_busy_buffers_size 128k;
        fastcgi_temp_file_write_size 256k;

        gzip on;
        gzip_min_length  1k;
        gzip_buffers     4 16k;
        gzip_http_version 1.1;
        gzip_comp_level 2;
        gzip_types     text/plain application/javascript application/x-javascript text/javascript text/css application/xml application/xml+rss;
        gzip_vary on;
        gzip_proxied   expired no-cache no-store private auth;
        gzip_disable   "MSIE [1-6]\.";

        #limit_conn_zone $binary_remote_addr zone=perip:10m;
        ##If enable limit_conn_zone,add "limit_conn perip 10;" to server section.

        server_tokens off;
        access_log off;
server
    {
    if ($host = www.supershot.cn) {
        return 301 https://$host$request_uri;
    } # managed by Certbot


	listen 80;
    server_name supershot.cn www.supershot.cn;
	return 301 https://www.supershot.cn$request_uri;
    

}
server
    {
        listen 443 ssl http2;
        #listen [::]:80 default_server ipv6only=on;
        server_name supershot.cn www.supershot.cn;
	ssl off;
   	ssl_certificate cert/a.pem; # managed by Certbot
   	ssl_certificate_key cert/a.key;
	#ssl_certificate /etc/letsencrypt/live/www.supershot.cn/fullchain.pem; # managed by Certbot
	#ssl_certificate_key /etc/letsencrypt/live/www.supershot.cn/privkey.pem; # managed by Certbot       
	ssl_session_timeout 8m;
	ssl_ciphers HIGH:!aNULL:!MD5; 
 	ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
 	ssl_prefer_server_ciphers on;
        index  index.html index.htm index.jsp default.jsp index.do default.do index.php default.php Home.html index.;
        root  /home/wwwroot/default/gyy;

	include rewrite/other.conf;
        error_page   404   /error/404.html;

        # Deny access to PHP files in specific directory
        #location ~ /(wp-content|uploads|wp-includes|images)/.*\.php(\/.*)*$ { deny all; }

        #include enable-php.conf;

	include enable-php-pathinfo.conf;	
	
	location ~ .*\.(gif|jpg|jpeg|png|bmp|swf)$ 
	{  
		expires 30d; 
	}	 

	location ~ .*\.(js|css|html)?$ 
	{ 
		expires 12h; 
	} 
	
        location ~ /.well-known {
            allow all;
        }

        location ~ /\.
        {
	    root /home/wwwroot/default/gyy;
       	    index index.html index.htm;
            deny all;
        }

        location ~ \.php$ {
     	   include /usr/local/nginx/conf/fastcgi_params;
       	   fastcgi_pass  127.0.0.1:9000;
           # fastcgi_pass unix:/var/run/php7-fpm.sock;
           fastcgi_index index.php;
           fastcgi_param SCRIPT_FILENAME $document_root/$fastcgi_script_name;
        }	

        access_log  /home/wwwlogs/access.log;    

    }
    include vhost/*.conf;
}

 

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值