:(用的)
https://www.coderecord.cn/lets-encrypt-wildcard-certificates.html :acme.sh
vim .acme.sh/account.conf


SAVED_GD_Key='************************************'
SAVED_GD_Secret='***********************************'

根据个人情况设定域名商


./.acme.sh/acme.sh --issue -d sensen.com -d *.sensen.com --dns dns_gd

acme.sh --installcert -d sensen.com -d *.sensen.com --keypath /etc/nginx/ssl/jwsmed.com.key --fullchainpat /etc/nginx/ssl/fullchain.cer --reloadcmd "systemctl restart nginx"

原理:前端为SLB 后端devs.sensen.com 配置nginx做分发; 监听443和80端口,用nginx代理其它需要证书服务器
nginx配置
ssl.conf (通配)

ssl_certificate /etc/nginx/ssl/fullchain.cer;
ssl_certificate_key /etc/nginx/ssl/sensen.com.key;

 

 

https.conf

ssl_certificate /etc/nginx/ssl/fullchain.cer;
ssl_certificate_key /etc/nginx/ssl/luoluo.com.key;

server {
listen 80;
server_name *.luoluo.com luoluo.com;
rewrite ^ https://$http_host$request_uri? permanent;
}

 

相关文章:

  • 2021-12-09
  • 2021-09-18
  • 2021-06-26
  • 2021-12-01
  • 2021-04-30
  • 2022-12-23
猜你喜欢
  • 2021-05-28
  • 2021-07-02
  • 2022-01-04
  • 2021-12-28
  • 2022-02-07
  • 2021-09-19
  • 2022-12-23
相关资源
相似解决方案