From aa9a82a3d355bbd407194b844ce2a47dab33b44e Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=E5=AD=99=E5=B0=8F=E4=BA=91?= Date: Fri, 16 May 2025 15:07:04 +0800 Subject: [PATCH] xx --- nginx/vhosts/consul.conf | 4 ++-- nginx/vhosts/minio.conf | 20 ++++++++++++++++++++ nginx/vhosts/minioconsole.conf | 20 ++++++++++++++++++++ nginx/vhosts/oidcservice.conf | 5 ++--- nginx/vhosts/sky.conf | 2 +- nginx/vhosts/xxljob.conf | 4 ++-- 6 files changed, 47 insertions(+), 8 deletions(-) create mode 100644 nginx/vhosts/minio.conf create mode 100644 nginx/vhosts/minioconsole.conf diff --git a/nginx/vhosts/consul.conf b/nginx/vhosts/consul.conf index de3b93c..c948825 100644 --- a/nginx/vhosts/consul.conf +++ b/nginx/vhosts/consul.conf @@ -2,7 +2,7 @@ server { listen 80; listen 443 ssl; - server_name ${CONSUL_DOMAIN}; + server_name consul-bazhong.t-aaron.com; ssl_certificate /etc/nginx/t-aaron.com.pem; ssl_certificate_key /etc/nginx/t-aaron.com.key; @@ -12,7 +12,7 @@ server { ssl_prefer_server_ciphers on; location / { - proxy_pass http://${CONSUL_NAME}:8500; + proxy_pass http://CONSUL_bazhong:8500; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; diff --git a/nginx/vhosts/minio.conf b/nginx/vhosts/minio.conf new file mode 100644 index 0000000..4c8ce8c --- /dev/null +++ b/nginx/vhosts/minio.conf @@ -0,0 +1,20 @@ + +server { + listen 80; + listen 443 ssl; + server_name minio-bazhong.t-aaron.com; + + ssl_certificate /etc/nginx/t-aaron.com.pem; + ssl_certificate_key /etc/nginx/t-aaron.com.key; + ssl_session_timeout 5m; + ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; + ssl_protocols TLSv1.1 TLSv1.2 TLSv1.3; + ssl_prefer_server_ciphers on; + + location / { + proxy_set_header Host $http_host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_pass http://minio-bazhong.t-aaron.com:9000; + } +} diff --git a/nginx/vhosts/minioconsole.conf b/nginx/vhosts/minioconsole.conf new file mode 100644 index 0000000..a0b1eaf --- /dev/null +++ b/nginx/vhosts/minioconsole.conf @@ -0,0 +1,20 @@ + +server { + listen 80; + listen 443 ssl; + server_name minioconsole-bazhong.t-aaron.com; + + ssl_certificate /etc/nginx/t-aaron.com.pem; + ssl_certificate_key /etc/nginx/t-aaron.com.key; + ssl_session_timeout 5m; + ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4; + ssl_protocols TLSv1.1 TLSv1.2 TLSv1.3; + ssl_prefer_server_ciphers on; + + location / { + proxy_set_header Host $http_host; + proxy_set_header X-Real-IP $remote_addr; + proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; + proxy_pass http://minio-bazhong.t-aaron.com:9001; + } +} diff --git a/nginx/vhosts/oidcservice.conf b/nginx/vhosts/oidcservice.conf index a432143..15b222d 100644 --- a/nginx/vhosts/oidcservice.conf +++ b/nginx/vhosts/oidcservice.conf @@ -1,8 +1,7 @@ server { listen 80; listen 443 ssl; - - server_name ${OIDC_DOMAIN}; + server_name ${OIDC_SERVER_DOMAIN}; # SSL证书配置 ssl_certificate /etc/nginx/t-aaron.com.pem; @@ -14,7 +13,7 @@ location / { - proxy_pass http://${OIDC_SERVER_NAME}:8090; + proxy_pass http://OIDC_SERVER_bazhong:8090; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; diff --git a/nginx/vhosts/sky.conf b/nginx/vhosts/sky.conf index d285800..7017a3a 100644 --- a/nginx/vhosts/sky.conf +++ b/nginx/vhosts/sky.conf @@ -12,7 +12,7 @@ ssl_prefer_server_ciphers on; location / { - proxy_pass http://${SKYWALKING_UI_NAME}:8080; + proxy_pass http://SKYWALKING_UI_bazhong:8080; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; diff --git a/nginx/vhosts/xxljob.conf b/nginx/vhosts/xxljob.conf index 755bcd5..ac03608 100644 --- a/nginx/vhosts/xxljob.conf +++ b/nginx/vhosts/xxljob.conf @@ -1,7 +1,7 @@ server { listen 80; listen 443 ssl; - server_name ${XXL_JOB_DOMAIN}; + server_name ${XXLJOB_DOMAIN}; # SSL证书配置 ssl_certificate /etc/nginx/t-aaron.com.pem; @@ -11,7 +11,7 @@ server { ssl_protocols TLSv1.1 TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; location / { - proxy_pass http://${XXL_JOB_NAME}:8080; + proxy_pass http://${XXLJOB_NAME}:8080; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;