- # 公共证书路径
- ssl_certificate /etc/nginx/ssl/reghao.cn/fullchain.cer;
- ssl_certificate_key /etc/nginx/ssl/reghao.cn/reghao.cn.key;
- # 公共安全加固参数
- ssl_protocols TLSv1.2 TLSv1.3;
- ssl_ciphers HIGH:!aNULL:!MD5;
- ssl_prefer_server_ciphers on;
- ssl_session_cache shared:SSL:10m;
- ssl_session_timeout 10m;
|