server {
# 1、需要修改listen监听端口 可同时监听多个 https端口为443
listen 80;
listen 443 ssl; # 运行http, https同时访问
server_name _; # 域名地址 根据实际情况进行修改
# 2、添加以下数据到server中
ssl_certificate /etc/nginx/ca/1994876_www.bgsm888.com.pem; # 证书存储地址
ssl_certificate_key /etc/nginx/ca/1994876_www.bgsm888.com.key; # 证书存储地址
ssl_session_timeout 5m;
ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_prefer_server_ciphers on;
include ecshop.conf;
location / {
root /ecmoban/www;
index index.php index.html index.htm;
}
error_page 404 /404.html;
location = /404.html {
root /usr/share/nginx/html;
}
location ~* \.(eot|otf|ttf|woff|svg)$ {
root /ecmoban/www;
add_header Access-Control-Allow-Origin *;
}
#
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root /usr/share/nginx/html;
}
#
location ~ \.php {
root /ecmoban/www;
fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
fastcgi_index index.php;
fastcgi_split_path_info ^(.+\.php)(/?.+)$;
fastcgi_param PATH_INFO $fastcgi_path_info;
fastcgi_param PATH_TRANSLATED $document_root$fastcgi_path_info;
include fastcgi_params;
fastcgi_pass 127.0.0.1:9000;
fastcgi_connect_timeout 600;
fastcgi_send_timeout 600;
fastcgi_read_timeout 600;
fastcgi_buffer_size 256k;
fastcgi_buffers 16 256k;
fastcgi_busy_buffers_size 512k;
fastcgi_temp_file_write_size 512k;
}
}