【发布时间】:2016-11-03 05:35:06
【问题描述】:
如果我将所有 http 流量重定向到 https,我们是否应该在 443 块上使用 server_name:
server {
listen 80;
listen [::]:80;
server_name domain.com;
return 301 https://$server_name$request_uri;
}
server {
listen 443 ssl;
listen [::]:443 ssl;
server_name domain.com; #do we need this?
ssl_certificate /etc/letsencrypt/live/domain.com/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/domain.com/privkey.pem;
ssl_session_timeout 5m;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
ssl_ciphers HIGH:!aNULL:!MD5;
ssl_prefer_server_ciphers on;
我可以省略在 443 端口下的第二个服务器块中写入 server_name 吗?
【问题讨论】:
标签: ssl nginx ssl-certificate