找了一大堆的百度,各類雜七雜八的寫了一大堆,坑的我呀,受不了。html
# HTTPS server # server { listen 443 ssl; server_name localhost; ssl on; root html; index index.html index.htm; #替換成本身的ssl證書路徑 start ssl_certificate /usr/local/nginx/cert/xxx.pem; ssl_certificate_key /usr/local/nginx/cert/xxx.key; #end ssl_session_timeout 5m; ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; ssl_protocols TLSv1 TLSv1.1 TLSv1.2; ssl_prefer_server_ciphers on; location / { #ip寫本身的 proxy_pass http://ip:80; proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection keep-alive; proxy_set_header Host $host; proxy_cache_bypass $http_upgrade; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-Proto $scheme; } }