* 定义一个新的server,配置如下,必须的配置有listen ,server\_name, ssl ,ssl\_certificate, ssl\_certificate\_key,一般配置的时候我都是直接复制,然后改主机名,证书私钥文件,日志路径,root的根目录这几项。 * 如果想让访问80的转到443,可用rewrite语句 ~~~csharp listen 443; server_name agent.t.jlhcar.com; ssl on; ssl_certificate, "/usr/local/certificate/xxxx.pem";\\证书 ssl_certificate_key "/usr/local/certificate/xxxx.key";\\私钥 ssl_session_cache shared:SSL:1m; ssl_session_timeout 10m; ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; ssl_prefer_server_ciphers on; ssl_protocols TLSv1 TLSv1.1 TLSv1.2;\\协议 ... //日志以及root根目录的其他配置 ~~~ ~~~ruby server { listen 80; server_name www.example.com rewrite ^/(.*)$ https://www.example.com/$1; } ~~~