1、第一步:登录腾讯云官网:
腾讯云 产业智变·云启未来 - 腾讯 (tencent.com)
2、点击服务器
3、点击 腾讯云SSL证书控制台
编辑
4、现在下载腾讯云SSL证书,点击下载就可以了
5、这里用到的是Ngnix,下载ngnix就可以了
6、解压文件之后
7、解压文件之后,选择key和crt这两个文件
8、新建一个https文件
8.1將key和crt这两个文件放进去,放到https文件当中:
9、之后打开宝塔的Ngnix的配置文件,将相关配置资料进行配置:
腾讯云申请免费SSL证书以及Nginx部署设置_哔哩哔哩_bilibili
server {
#SSL 默认访问端口号为 443
listen 443 ssl;
#请填写绑定证书的域名
server_name cloud.tencent.com;
#请填写证书文件的绝对路径。此路径仅供参考,具体请您按照实际目录操作
ssl_certificate C:\\nginx\\certificates\\cloud.tencent.com_bundle.crt;
#请填写私钥文件的绝对路径。此路径仅供参考,具体请您按照实际目录操作
ssl_certificate_key C:\\nginx\\certificates\\cloud.tencent.com.key;
ssl_session_timeout 5m;
#请按照以下协议配置
ssl_protocols TLSv1.2 TLSv1.3;
#请按照以下套件配置,配置加密套件,写法遵循 openssl 标准。
ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:HIGH:!aNULL:!MD5:!RC4:!DHE;
ssl_prefer_server_ciphers on;
location / {
#网站主页路径。此路径仅供参考,具体请您按照实际目录操作。
root C:\\html;
index index.html index.htm;
}
}
10、由于https存放的路径不同,因此需要进行一下修改ssl_certificate 这里的路径
ssl_certificate 中编写crt路径,
/home/myProject/https/lingyidianke.com_bundle.crt
ssl_certificate_key编写key路径
/home/myProject/https/lingyidianke.com.key
第一步:修改server_name的localhost文件,将localhost修改为
www.lingyidianke.com
资料:
# user www;
user root;
worker_processes auto;
error_log /www/wwwlogs/nginx_error.log debug;
pid /www/server/nginx/logs/nginx.pid;
worker_rlimit_nofile 51200;
events
{
use epoll;
worker_connections 51200;
multi_accept on;
}
http {
include mime.types;
default_type application/octet-stream;
sendfile on;
keepalive_timeout 65;
client_max_body_size 100m;
#用于tomcat反向代理,解决nginx 504错误
proxy_connect_timeout 7200; #单位秒
proxy_send_timeout 7200; #单位秒
proxy_read_timeout 7200; #单位秒
proxy_buffer_size 16k;
proxy_buffers 4 64k;
proxy_busy_buffers_size 128k;
proxy_temp_file_write_size 128k;
# ps:以timeout结尾配置项时间要配置大点
server {
listen 80;
server_name www.lingyidianke.com;
# return 301 http://lingyidianke.com$request_uri;
charset utf-8;
location / {
root /home/myProject/ruoyi-vue/dist;
# 原先
index index.html index.htm;
try_files $uri $uri/ @router;
# try_files $uri $uri/ @router;
# proxy_pass http://154.8.165.152:9090/;
# rewrite ^(.*) https://www.lingyidianke.com$1;
}
location @router {
rewrite ^.*$ /index.html last;
}
location ^~/dev-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/; #127.0.0.1如果不是这台电脑的项目。改成服务器IP,端口为网关端口
}
location /prod-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/;
}
# location /admin {
# root /home/myProject/ruoyi-admin/dist;
# # 原先
# try_files $uri $uri/ /admin/index.html;
# index index.html index.htm;
# # try_files $uri $uri/ @router;
# # proxy_pass http://154.8.165.152:9090/;
# # rewrite ^(.*) https://www.lingyidianke.com$1;
# }
# location = /index.html {
# root /home/myProject/ruoyi-admin/dist;
# }
# location /admin/ {
# alias /home/myProject/ruoyi-vue/dist;
# try_files $uri $uri/ /admin/index.html;
# index index.html index.html;
# }
# location @dsrouter {
# rewrite ^/(admin)/(.+)$ /$1/index.html last;
# }
# location /prod-api/ {
# proxy_set_header Host $http_host;
# proxy_set_header X-Real-IP $remote_addr;
# proxy_set_header REMOTE-HOST $remote_addr;
# proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
# proxy_pass http://localhost:9090/;
# }
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root html;
}
}
server {
#SSL 默认访问端口号为 443
listen 443 ssl;
#请填写绑定证书的域名
server_name www.lingyidianke.com;
#请填写证书文件的绝对路径。此路径仅供参考,具体请您按照实际目录操作
ssl_certificate /home/myProject/https/lingyidianke.com_bundle.crt;
#请填写私钥文件的绝对路径。此路径仅供参考,具体请您按照实际目录操作
ssl_certificate_key /home/myProject/https/lingyidianke.com.key;
ssl_session_timeout 5m;
#请按照以下协议配置
ssl_protocols TLSv1.2 TLSv1.3;
#请按照以下套件配置,配置加密套件,写法遵循 openssl 标准。
ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:HIGH:!aNULL:!MD5:!RC4:!DHE;
ssl_prefer_server_ciphers on;
location / {
#网站主页路径。此路径仅供参考,具体请您按照实际目录操作。
root /home/myProject/ruoyi-vue/dist;
index index.html index.htm;
try_files $uri $uri/ @router;
}
location @router {
rewrite ^.*$ /index.html last;
}
location ^~/dev-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/; #127.0.0.1如果不是这台电脑的项目。改成服务器IP,端口为网关端口
}
location /prod-api/ {
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header REMOTE-HOST $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass https://154.8.165.152:9090/;
}
# location /admin {
# root /home/myProject/ruoyi-admin/dist;
# # 原先
# try_files $uri $uri/ /admin/index.html;
# index index.html index.htm;
# try_files $uri $uri/ @router;
# proxy_pass http://154.8.165.152:9090/;
# rewrite ^(.*) https://www.lingyidianke.com$1;
# }
}
}