1. # HTTPS
    2. server {
    3. listen 443 ssl http2;
    4. listen [::]:443 ssl http2;
    5. # https ssl
    6. ssl_certificate ssl/server.lmsite.cn.crt;
    7. ssl_certificate_key ssl/server.lmsite.cn.key;
    8. include ssl/ssl_config.conf;
    9. server_name server.lmsite.cn www.server.lmsite.cn;
    10. access_log /data/weblogs/server.lmsite.cn_nginx.log combined;
    11. # 代理 spug
    12. location / {
    13. include proxy_set_header.conf;
    14. proxy_pass http://127.0.0.1:61208;
    15. }
    16. # 限制访问的文件
    17. location ~ /(\.user\.ini|\.ht|\.git|\.svn|\.project|LICENSE|README\.md) {
    18. deny all;
    19. }
    20. }
    21. # http rewrite https
    22. server {
    23. listen 80;
    24. listen [::]:80;
    25. server_name server.lmsite.cn www.server.lmsite.cn;
    26. rewrite ^(.*)$ https://${server_name}$1 permanent;
    27. }