本帖最后由 lzxlegend 于 2017-9-18 10:28 编辑
nginx+php56环境
配置了站点Let's encrypt ssl 并且自己修改配置文件启动了hsts
然后我其他的站点我打开的时候提示我证书不对,不安全,可是我其他几个站点根本没有启用ssl啊?请问这是什么问题?
配置hsts站点的nginx vhost 配置文件ssl部分代码- #SSL-START SSL相关配置,请勿删除或修改下一行带注释的404规则
- #error_page 404/404.html;
- limit_conn perserver 300;
- limit_conn perip 25;
- limit_rate 512k;
- ssl_certificate /etc/letsencrypt/live/jtsky.cc/fullchain.pem;
- ssl_certificate_key /etc/letsencrypt/live/jtsky.cc/privkey.pem;
- ssl on;
- ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
- ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4:!DH:!DHE;
- ssl_prefer_server_ciphers on;
- add_header Strict-Transport-Security "max-age=63072000; includeSubdomains; preload";
- if ($server_port !~ 443){
- rewrite ^(/.*)$ https://$host$1 permanent;
- }
- error_page 497 https://$host$request_uri;
- #SSL-END
复制代码
|
|