2016-04-22

server {
listen 443 ssl;
server_name shuaipeng.ren;

ssl_certificate /data/sslkey/shuaipeng.ren_bundle.crt;
ssl_certificate_key /data/sslkey/shuaipeng.ren.key;

ssl_session_cache shared:SSL:1m;
ssl_session_timeout 5m;

ssl_ciphers HIGH:!aNULL:!MD5;
ssl_prefer_server_ciphers on;

location / {
root /srv/www/htdocs/;
index index.html index.htm;
}
}

以上无法运行 ,修改运行机制
server {
listen 443 ssl http2;
server_name shuaipeng.ren;

ssl on;
ssl_certificate /data/sslkey/shuaipeng.ren_bundle.crt;
ssl_certificate_key /data/sslkey/shuaipeng.ren.key;

ssl_session_cache shared:SSL:1m;
#ssl_session_timeout 5m;

ssl_ciphers HIGH:!aNULL:!MD5;
#ssl_prefer_server_ciphers on;

location / {
root /srv/www/htdocs/;
index index.html index.htm;
}
}

申请免费的SSL证书
https://buy.wosign.com/free/#email

http://www.tuicool.com/articles/BZbe6jF