Nginx SSL配置协议
upstream web_backends_80 {
ip_hash; #每个请求按访问ip的hash结果分配可以解决session的问题。
server 10.88.1.17:80;#web端1
server 10.88.1.18:80;#web端2
}
server {
listen 80;
listen 443 ssl;
server_name test.xz.domain.com;
if ($server_port !~ 443){
rewrite ^(/.*)$ https://$host$1 permanent;
}
charset utf-8;
add_header X-Xss-Protection 1;
ssl_certificate /data/test.xz.e2cs.com/1_test.xz.e2cs.com_bundle.pem;
ssl_certificate_key /data/test.xz.e2cs.com/0_test.xz.e2cs.com.key;
proxy_redirect off; #重定向url
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header Host $http_host;
location / {
proxy_pass http://web_backends_80;
}
}