柚子快報邀請碼778899分享:騰訊云寶塔配置https的方法
柚子快報邀請碼778899分享:騰訊云寶塔配置https的方法
1、第一步:登錄騰訊云官網(wǎng):
騰訊云 產(chǎn)業(yè)智變·云啟未來 - 騰訊 (tencent.com)
2、點(diǎn)擊服務(wù)器
3、點(diǎn)擊?騰訊云SSL證書控制臺
編輯
4、現(xiàn)在下載騰訊云SSL證書,點(diǎn)擊下載就可以了
5、這里用到的是Ngnix,下載ngnix就可以了
6、解壓文件之后
7、解壓文件之后,選擇key和crt這兩個文件
8、新建一個https文件
8.1將key和crt這兩個文件放進(jìn)去,放到https文件當(dāng)中:
9、之后打開寶塔的Ngnix的配置文件,將相關(guān)配置資料進(jìn)行配置:
騰訊云申請免費(fèi)SSL證書以及Nginx部署設(shè)置_嗶哩嗶哩_bilibili
server { #SSL 默認(rèn)訪問端口號為 443 listen 443 ssl; #請?zhí)顚懡壎ㄗC書的域名 server_name cloud.tencent.com; #請?zhí)顚懽C書文件的絕對路徑。此路徑僅供參考,具體請您按照實(shí)際目錄操作 ssl_certificate C:\\nginx\\certificates\\cloud.tencent.com_bundle.crt; #請?zhí)顚懰借€文件的絕對路徑。此路徑僅供參考,具體請您按照實(shí)際目錄操作 ssl_certificate_key C:\\nginx\\certificates\\cloud.tencent.com.key; ssl_session_timeout 5m; #請按照以下協(xié)議配置 ssl_protocols TLSv1.2 TLSv1.3; #請按照以下套件配置,配置加密套件,寫法遵循 openssl 標(biāo)準(zhǔn)。 ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:HIGH:!aNULL:!MD5:!RC4:!DHE; ssl_prefer_server_ciphers on; location / { #網(wǎng)站主頁路徑。此路徑僅供參考,具體請您按照實(shí)際目錄操作。 root C:\\html; index index.html index.htm; } }
10、由于https存放的路徑不同,因此需要進(jìn)行一下修改ssl_certificate 這里的路徑
ssl_certificate 中編寫crt路徑,
/home/myProject/https/lingyidianke.com_bundle.crt
ssl_certificate_key編寫key路徑
/home/myProject/https/lingyidianke.com.key
第一步:修改server_name的localhost文件,將localhost修改為
www.lingyidianke.com
資料:
# user www;
user root;
worker_processes auto;
error_log /www/wwwlogs/nginx_error.log debug;
pid /www/server/nginx/logs/nginx.pid;
worker_rlimit_nofile 51200;
events
{
use epoll;
worker_connections 51200;
multi_accept on;
}
http {
include mime.types;
default_type application/octet-stream;
sendfile on;
keepalive_timeout 65;
client_max_body_size 100m;
#用于tomcat反向代理,解決nginx 504錯誤
proxy_connect_timeout 7200; #單位秒
proxy_send_timeout 7200; #單位秒
proxy_read_timeout 7200; #單位秒
proxy_buffer_size 16k;
proxy_buffers 4 64k;
proxy_busy_buffers_size 128k;
proxy_temp_file_write_size 128k;
# ps:以timeout結(jié)尾配置項時間要配置大點(diǎn)
server {
listen 80;
server_name www.lingyidianke.com;
# return 301 http://lingyidianke.com$request_uri;
charset utf-8;
location / {
root /home/myProject/ruoyi-vue/dist;
# 原先
index index.html index.htm;
try_files $uri $uri/ @router;
# try_files $uri $uri/ @router;
# proxy_pass http://154.8.165.152:9090/;
# rewrite ^(.*) https://www.lingyidianke.com$1;
}
location @router {
rewrite ^.*$ /index.html last;
}
location ^~/dev-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/; #127.0.0.1如果不是這臺電腦的項目。改成服務(wù)器IP,端口為網(wǎng)關(guān)端口
}
location /prod-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/;
}
# location /admin {
# root /home/myProject/ruoyi-admin/dist;
# # 原先
# try_files $uri $uri/ /admin/index.html;
# index index.html index.htm;
# # try_files $uri $uri/ @router;
# # proxy_pass http://154.8.165.152:9090/;
# # rewrite ^(.*) https://www.lingyidianke.com$1;
# }
# location = /index.html {
# root /home/myProject/ruoyi-admin/dist;
# }
# location /admin/ {
# alias /home/myProject/ruoyi-vue/dist;
# try_files $uri $uri/ /admin/index.html;
# index index.html index.html;
# }
# location @dsrouter {
# rewrite ^/(admin)/(.+)$ /$1/index.html last;
# }
# location /prod-api/ {
# proxy_set_header Host $http_host;
# proxy_set_header X-Real-IP $remote_addr;
# proxy_set_header REMOTE-HOST $remote_addr;
# proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
# proxy_pass http://localhost:9090/;
# }
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root html;
}
}
server {
#SSL 默認(rèn)訪問端口號為 443
listen 443 ssl;
#請?zhí)顚懡壎ㄗC書的域名
server_name www.lingyidianke.com;
#請?zhí)顚懽C書文件的絕對路徑。此路徑僅供參考,具體請您按照實(shí)際目錄操作
ssl_certificate /home/myProject/https/lingyidianke.com_bundle.crt;
#請?zhí)顚懰借€文件的絕對路徑。此路徑僅供參考,具體請您按照實(shí)際目錄操作
ssl_certificate_key /home/myProject/https/lingyidianke.com.key;
ssl_session_timeout 5m;
#請按照以下協(xié)議配置
ssl_protocols TLSv1.2 TLSv1.3;
#請按照以下套件配置,配置加密套件,寫法遵循 openssl 標(biāo)準(zhǔn)。
ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:HIGH:!aNULL:!MD5:!RC4:!DHE;
ssl_prefer_server_ciphers on;
location / {
#網(wǎng)站主頁路徑。此路徑僅供參考,具體請您按照實(shí)際目錄操作。
root /home/myProject/ruoyi-vue/dist;
index index.html index.htm;
try_files $uri $uri/ @router;
}
location @router {
rewrite ^.*$ /index.html last;
}
location ^~/dev-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/; #127.0.0.1如果不是這臺電腦的項目。改成服務(wù)器IP,端口為網(wǎng)關(guān)端口
}
location /prod-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/;
}
# location /admin {
# root /home/myProject/ruoyi-admin/dist;
# # 原先
# try_files $uri $uri/ /admin/index.html;
# index index.html index.htm;
# try_files $uri $uri/ @router;
# proxy_pass http://154.8.165.152:9090/;
# rewrite ^(.*) https://www.lingyidianke.com$1;
# }
}
}
柚子快報邀請碼778899分享:騰訊云寶塔配置https的方法
好文推薦
本文內(nèi)容根據(jù)網(wǎng)絡(luò)資料整理,出于傳遞更多信息之目的,不代表金鑰匙跨境贊同其觀點(diǎn)和立場。
轉(zhuǎn)載請注明,如有侵權(quán),聯(lián)系刪除。