1.登陆dns机器:
vi /etc/named.conf 查看配置
directory "/var/named";
include "/etc/named.rfc1912.zones";
include "/etc/named.root.key";
2.cd /etc/named.rfc1912.zones
zone "base.XXX.XXX" IN {
type master;
file "XX.XX.XX.zone";
};
进行域名解析
3.进入 cd /var/named
vi XX.XX.zone
@ IN SOA stb.internal. root.stb.internal. (
6 ; Serial
604800 ; Refresh
86400 ; Retry
2419200 ; Expire
604800 ) ; Negative Cache TTL
;
@ IN NS dns01.stb.com.
dns01 IN A 192.168.4.44
H5 IN A 192.168.3.XX
kk IN A 192.168.3.111
cc IN A 192.168.3.111
重启dns
service bind9 restart
重启nginx:
1308 ps -ef|grep named
1309 kill -9 139404
1310 /usr/sbin/named
4. 192.168.3.111 nginx 机器:
进入nginx
cd /etc/nginx/
查看nginx 配置:
include /etc/nginx/conf.d/*;
include /etc/nginx/sites-enabled/*;
进入:
cd /etc/nginx/conf.d/
/etc/nginx/conf.d/upstream.conf
反响代理:
upstream XX {
server 192.168.3.XX:8083 max_fails=3 fail_timeout=10s;
keepalive 200;
}
重启nginx:
nginx -s reload
---------------------修改https 到http---------
1.登陆dns
vi /etc/bind/named.conf.default-zones
进入/etc/bind/XXXX
增加对应的二级域名:
指到对应的nginx机器
登陆nginx服务器:
cd /etc/nginx/nginx.conf
include /etc/nginx/conf.d/*.conf;
include /etc/nginx/sites-enabled/*;
cd /etc/nginx/sites-enabled/
注意:屏蔽ssl相关内容,且监听为80端口
server {
listen 80;
server_name h5mxd.sit.nonobank.com;
root /usr/share/nginx/h5_mingxiaodai;
index index.html;
# ssl on;
# ssl_certificate /etc/nginx/SSL/h5.sit.mingxiaodai.com.crt;
# ssl_certificate_key /etc/nginx/SSL/h5.sit.mingxiaodai.com.key;
# ssl_session_timeout 5m;
# ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
# ssl_ciphers "HIGH:!aNULL:!MD5 or HIGH:!aNULL:!MD5:!3DES:!EXPORT";
# ssl_prefer_server_ciphers on;
#access_log /dev/null;
access_log /var/log/nginx/h5_mingxiaodai_access.log main;
error_log /var/log/nginx/h5_mingxiaodai_error.log;
#error_log /dev/null;
location / {
try_files $uri $uri/ =404;
}
error_page 404 /404.html;
error_page 500 502 503 504 /50x.html;
error_page 405 =200 $uri;
location = /50x.html {
root /usr/share/nginx/html;
}
}