证书申请网络有很多方法,这里腾讯云的nginx版证书举列
证书配置
server.ssl.key-store-type=PKCS12
server.ssl.key-store=zzy.p12
server.ssl.key-store-password=密码
server.ssl.key-alias=1
server.ssl.enabled=true
p12文件放到项目
worker_processes 1;
events {worker_connections 1024;
}
http {include mime.types;default_type application/octet-stream;client_max_body_size 100m;sendfile on;keepalive_timeout 65;server {listen 443 ssl;server_name 域名; ssl_certificate 文件根路径.crt; ssl_certificate_key 文件根路径.key; ssl_session_timeout 5m;ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;ssl_protocols TLSv1 TLSv1.1 TLSv1.2; ssl_prefer_server_ciphers on;location / {root html/api;index index.html;}location = /50x.html {root html;}location ~* \.(gif|jpg|jpeg|png|css|js|ico)$ { root html/api;} location /api {proxy_pass 域名:转发后端网关端口;}
}server {listen 新开端口(默认80);server_name 域名; location / {root html/api;index index.html;}location = /50x.html {root html;}location ~* \.(gif|jpg|jpeg|png|css|js|ico)$ { root html/api;} location /api {proxy_pass https://域名:转发后端网关端口;} return 301 https://$host$request_uri;
}
}
可以到https://tool.chinaz.com/port网站查看端口是否开放
有问题欢迎留言。。。。。