50010623 发表于 2018-12-7 09:19:50

nginx+tomcat做动静分离配置+nginx+SSL

  usernobody;
  worker_processes8;
  

  

  #pid      logs/nginx.pid;
  

  

  events {
  worker_connections1024;
  }
  

  

  http {
  include       mime.types;
  default_typeapplication/octet-stream;
  log_formatmain'$remote_addr - $remote_user [$time_local] "$request" '
  '$status $body_bytes_sent "$http_referer" '
  '"$http_user_agent" "$http_x_forwarded_for"';
  

  access_loglogs/access.logmain;
  

  #sendfileon;
  #tcp_nopushon;
  #keepalive_timeout0;
  keepalive_timeout65;
  gzipon;
  sendfile      on;
  #keepalive_timeout0;
  #keepalive_timeout65;
  

  #gzipon;
  upstream tomcat{
  server 10.251.236.220:8080 weight=1 max_fails=2 fail_timeout=30s;
  ip_hash;
  }
  server {
  listen   80;
  

  server_namewww.518qylm.com;
  #rewrite ^(.*)$ https://$host$1 permanent;
  charset utf-8;
  access_loglogs/host.access.logmain;
  roothtml/ROOT;
  location / {
  proxy_pass http://tomcat;
  proxy_redirectoff;
  proxy_set_headerHost $host;
  proxy_set_headerX-Real-IP $remote_addr;
  proxy_set_headerX-Forwarded-For $proxy_add_x_forwarded_for;
  proxy_set_header X-Forwarded-Proto$scheme;
  client_max_body_size10m;
  client_body_buffer_size128k;
  proxy_connect_timeout90;
  proxy_send_timeout90;
  proxy_read_timeout90;
  proxy_buffer_size4k;
  proxy_buffers4 32k;
  proxy_busy_buffers_size64k;
  proxy_temp_file_write_size64k;
  indexak47.html index.html index.htm;
  }
  # 鍔ㄦ佽姹傜殑杞彂
  location ~ .*.jsp$ {
  proxy_pass https://tomcat;
  proxy_set_header Host $host;
  }
  location ~ .*/.(gif|jpg|jpeg|png|bmp|swf|css|js)$ {
  expires      30d;
  }
  

  }
  

  server {
  listen443;
  server_name localhost;
  ssl on;
  ssl_certificate server.pem;
  ssl_certificate_key server.key;
  ssl_session_timeout 5m;
  ssl_protocols SSLv3 TLSv1;
  ssl_ciphers HIGH:!ADH:!EXPORT56:RC4+RSA:+MEDIUM;
  ssl_prefer_server_ciphers on;
  location / {
  proxy_pass http://tomcat;
  proxy_redirectoff;
  proxy_set_header      Host $host;
  proxy_set_header      X-Real-IP $remote_addr;
  

  proxy_set_header      X-Forwarded-For $proxy_add_x_forwarded_for;
  proxy_set_header X-Forwarded-Proto$scheme;
  client_max_body_size    10m;
  

  client_body_buffer_size 128k;
  proxy_connect_timeout   90;
  proxy_send_timeout      90;
  proxy_read_timeout      90;
  proxy_buffer_size       4k;
  proxy_buffers   4 32k;
  proxy_busy_buffers_size 64k;
  proxy_temp_file_write_size      64k;
  indexak47.html index.html index.htm;
  root html;
  }
  location ~ .*.jsp$ {
  proxy_pass https://tomcat;
  proxy_set_header Host $host;
  }
  location ~ .*/.(gif|jpg|jpeg|png|bmp|swf|css|js)$ {
  expires      30d;
  }
  

  }
  }
  




页: [1]
查看完整版本: nginx+tomcat做动静分离配置+nginx+SSL