ngxin常用配置样例

1、普通接口代理样例 

# 发短信服务
location /sms/ {
proxy_pass http://127.0.0.1:18080/sms/;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection "upgrade";
}

 

2、静态文件代理样例,禁止目录浏览

#app图片路径
location /app_img/ {
proxy_hide_header Vary;
fastcgi_hide_header X-Powered-By;
fastcgi_hide_header X-Runtime;
fastcgi_hide_header X-Version;
root /data/;
}

 

3、Web网址样例, 

#ebooking网址
location / {
root /data/web/xhotel;
}

 

4、把 http 都转发到 https, 需要使用 rewrite, 这样, 当访问 http://example.cn 会自动转发到 https://example.cn

server {
listen 80; # redirect to 443
server_name AAA.example.cn www.AAA.example.cn;
rewrite ^(.*)$ https://$host$1 permanent;
}

 

5、为不同域名配置不同证书

server {
listen 443 ssl;
server_name AAA.example.cn www.AAA.example.cn;

ssl_certificate "/home/yushan/demontf/2076603_AAA.example.cn.pem";
ssl_certificate_key "/home/yushan/demontf/2076603_AAA.example.cn.key";

location / {
proxy_pass http://127.0.0.1:8090;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header Host $http_host;
proxy_set_header X-NginX-Proxy true;
proxy_redirect default;
}
}


server {
listen 443 ssl; # redirect to https
server_name BBB.example.cn www.BBB.example.cn;

ssl_certificate "/home/yushan/demontf/2005538_BBB.example.cn.pem";
ssl_certificate_key "/home/yushan/demontf/2005538_BBB.example.cn.key";

location / {
proxy_pass http://127.0.0.1:8091;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header Host $http_host;
proxy_set_header X-NginX-Proxy true;
proxy_redirect default;
}
}

 

#api监控
location / {
# 增加代理指向本地端口
proxy_pass http://localhost:9090;
proxy_http_version 1.1;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection 'upgrade';
proxy_set_header Host $host;
proxy_cache_bypass $http_upgrade;
}

posted @ 2020-06-17 10:51  w20200618  阅读(90)  评论(0)    收藏  举报