nginx ssl 版本问题

服务配置好https 报错 TLS 版本不对,这个是原先配置

server {
    #默认请求端口
    listen 443;
    #内网访问域名
    server_name pro.zhiyue.api.petrvet.com;
    ssl on;
    ssl_certificate /usr/local/nginx/cert/5098259_pro.zhiyue.api.petrvet.com.pem;
    ssl_certificate_key /usr/local/nginx/cert/5098259_pro.zhiyue.api.petrvet.com.key;
    ssl_session_timeout 5m;
    ssl_protocols SSLv2 SSLv3 TLSv1;
    ssl_ciphers ALL:!ADH:!EXPORT56:RC4+RSA:+HIGH:+MEDIUM:+LOW:+SSLv2:+EXP;
    ssl_prefer_server_ciphers on;

修改后配置,重启nginx,恢复正常

server {
    #默认请求端口
    listen 443 ;
    #内网访问域名
    server_name pro.zhiyue.api.petrvet.com;
    ssl                            on;
    ssl_certificate /usr/local/nginx/cert/5098259_pro.zhiyue.api.petrvet.com.pem;
    ssl_certificate_key /usr/local/nginx/cert/5098259_pro.zhiyue.api.petrvet.com.key;
    ssl_session_timeout 5m;
    ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
    ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
    ssl_prefer_server_ciphers on;

 

 

 


版权声明:本文为qq_36270681原创文章,遵循CC 4.0 BY-SA版权协议,转载请附上原文出处链接和本声明。