diff --git a/nginx/vhosts/oidcadmin.conf b/nginx/vhosts/oidcadmin.conf index ddd14e1..4d26d98 100644 --- a/nginx/vhosts/oidcadmin.conf +++ b/nginx/vhosts/oidcadmin.conf @@ -4,6 +4,15 @@ server { listen 3443 ssl; server_name ${OIDC_ADMIN_DOMAIN}; + + # SSL证书配置 + ssl_certificate /etc/nginx/t-aaron.com.pem; + ssl_certificate_key /etc/nginx/t-aaron.com.key; + ssl_session_timeout 5m; + ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; + ssl_protocols TLSv1.1 TLSv1.2 TLSv1.3; + ssl_prefer_server_ciphers on; + # 开启gzip功能 gzip on; gzip_min_length 10k; diff --git a/nginxbazhong/vhosts/oidcadmin.conf b/nginxbazhong/vhosts/oidcadmin.conf index ddd14e1..4d26d98 100644 --- a/nginxbazhong/vhosts/oidcadmin.conf +++ b/nginxbazhong/vhosts/oidcadmin.conf @@ -4,6 +4,15 @@ server { listen 3443 ssl; server_name ${OIDC_ADMIN_DOMAIN}; + + # SSL证书配置 + ssl_certificate /etc/nginx/t-aaron.com.pem; + ssl_certificate_key /etc/nginx/t-aaron.com.key; + ssl_session_timeout 5m; + ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; + ssl_protocols TLSv1.1 TLSv1.2 TLSv1.3; + ssl_prefer_server_ciphers on; + # 开启gzip功能 gzip on; gzip_min_length 10k;