server{ listen 80; server_name tom.bbs.com; location / { proxy_pass http://192.168.64.128; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; } }
upstream apelearn { ip_hash; server 115.159.51.96:80 weight=100; server 47.104.7.242:80 weight=10; } server { listen 80; server_name www.apelearn.com; location / { proxy_pass http://apelearn; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; } }
ssl_certificate /etc/nginx/ssl/tom.ltd.crt; ssl_certificate_key /etc/nginx/ssl/tom.ltd.key; ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
firewall-cmd --add-port=443/tcp --permanent
firewall-cmd --reload
重載防火牆配置