server { listen 80; listen 443 ssl; server_name xinyangkj.jj2011.com; index index.php index.html index.htm default.php default.htm default.html; root c:/wwwroot/caiwuweb2024/xinyangkj; #START-ERROR-PAGE #error_page 403 /403.html; error_page 404 /404.html; #error_page 502 /502.html; #END-ERROR-PAGE #HTTP_TO_HTTPS_START #HTTP_TO_HTTPS_END #LIMIT_INFO_START #LIMIT_INFO_END #SSL-INFO-START ssl_certificate ssl/xinyangkj.jj2011.com/fullchain.pem; ssl_certificate_key ssl/xinyangkj.jj2011.com/privkey.pem; ssl_protocols TLSv1 TLSv1.1 TLSv1.2; ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:HIGH:!aNULL:!MD5:!RC4:!DHE; ssl_prefer_server_ciphers on; ssl_session_cache shared:SSL:10m; ssl_session_timeout 10m; error_page 497 https://$host$request_uri; #SSL-INFO-END #反代清理缓存配置 location ~ /purge(/.*) { proxy_cache_purge cache_one $1$is_args$args; } #proxy 反向代理 include proxy/xinyangkj.jj2011.com/*.conf; #PHP-INFO-START include php/56.conf; #PHP-INFO-END #REWRITE-START include rewrite/xinyangkj.jj2011.com/*.conf; #REWRITE-END #redirect 重定向 include redirect/xinyangkj.jj2011.com/*.conf; #禁止访问的文件或目录 location ~ ^/(\.user.ini|\.htaccess|\.git|\.svn|\.project|LICENSE|README.md) { return 404; } #一键申请SSL证书验证目录相关设置 location ~ \.well-known{ allow all; } access_log C:/BtSoft/wwwlogs/xinyangkj.jj2011.com.log; error_log C:/BtSoft/wwwlogs/xinyangkj.jj2011.com.error.log; }