Files
Hugo/ssl/fukun.net.nginx.conf
T

29 lines
656 B
Plaintext

# HTTP → HTTPS redirect
server {
listen 80;
server_name fukun.net www.fukun.net;
return 301 https://$host$request_uri;
}
# HTTPS
server {
listen 443 ssl http2;
server_name fukun.net www.fukun.net;
ssl_certificate /etc/nginx/ssl/fukun.net_bundle.crt;
ssl_certificate_key /etc/nginx/ssl/fukun.net.key;
ssl_protocols TLSv1.2 TLSv1.3;
ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256;
ssl_prefer_server_ciphers on;
ssl_session_cache shared:SSL:10m;
ssl_session_timeout 10m;
root /var/www/html;
index index.html;
location / {
try_files $uri $uri/ =404;
}
}