server {
listen 443 ssl ;
listen [::]:443 ssl;
server_name www.kingbal.com;
client_max_body_size 300M;
gzip on;
gzip_static on;
gzip_min_length 1k;
gzip_comp_level 4;
gzip_proxied any;
gzip_types text/plain text/xml text/css;
gzip_vary on;
gzip_disable "MSIE [1-6]\.(?!.*TST)";
ssl_certificate "/etc/nginx/pem_key/7114855_www.kingbal.com.pem";
ssl_certificate_key "/etc/nginx/pem_key/7114855_www.kingbal.com.key";
ssl_session_cache shared:SSL:1m;
ssl_session_timeout 10m;
ssl_ciphers PROFILE=SYSTEM;
ssl_prefer_server_ciphers on;
root /usr/share/nginx/tst;
# Load configuration files for the default server block.
include /etc/nginx/default.d/*.conf;
location ~* ^/(code|auth|admin|gen|job|mp|pay|order|realty|job) {
proxy_pass http://tst-gateway:9999;
proxy_connect_timeout 15s;
proxy_send_timeout 15s;
proxy_read_timeout 15s;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto http;
}
client_max_body_size:为上传文件大小限制。
www.kingbal.com:替换为你的网站站点。
7114855_www.kingbal.com.pem/key:为你的SSL证书。
gzip_disable: 根据你客户端的浏览器标志(user-agent)来设置,支持使用正则表达式。指定的浏览器标志不使用Gzip.该指令一般是用来排除一些明显不支持Gzip的浏览器。