Guest User

OSM Nginx Config

a guest
Oct 2nd, 2015
63
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. server {
  2.     listen 80 reuseport deferred;
  3.     server_name onestopmarketing.club www.onestopmarketing.club    168.235.68.99;
  4.     return 301 https://www.onestopmarketing.club$request_uri;
  5. }
  6. server {
  7.      listen 443 http2 ;
  8.      ssl on;
  9.      ssl_certificate    /etc/ssl/onestopmarketing.club.crt; #(or .pem)
  10.      ssl_certificate_key    /etc/ssl/onestopmarketing.club.key.nopass;
  11.      server_name onestopmarketing.club  ;
  12.      return 301 $scheme://www.onestopmarketing.club$request_uri;
  13.       }
  14.  
  15. server {
  16.     listen       443 ssl http2  default_server reuseport deferred;
  17.     ssl_certificate    /etc/ssl/onestopmarketing.club.crt; #(or .pem)
  18.     ssl_certificate_key    /etc/ssl/onestopmarketing.club.key.nopass;
  19.     ssl_protocols  TLSv1 TLSv1.1 TLSv1.2;
  20.     #keepalive_timeout    70;
  21.     #ssl_ciphers ECDHE-RSA-AES256-SHA384:AES256-SHA256:RC4:HIGH:!MD5:!aNULL:!eNULL:!NULL:!DH:!EDH:!AESGCM;
  22.     ssl_ciphers ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS;
  23.     ssl_prefer_server_ciphers on;
  24.     ssl_buffer_size 8k;
  25.     ssl_session_cache shared:SSL:20m;
  26.     ssl_dhparam /etc/ssl/dhparam.pem;
  27.     ssl_session_timeout 45m;
  28.     ssl_stapling on;
  29.     ssl_stapling_verify on;
  30.     ssl_trusted_certificate  /etc/ssl/trustchain.crt;
  31.     resolver 8.8.8.8 8.8.4.4 valid=300s;
  32.     resolver_timeout 5s;
  33.     add_header Strict-Transport-Security "max-age=31536000; includeSubDomains";
  34.     server_name  www.onestopmarketing.club;
  35.     #rest of config goes there
  36. }
RAW Paste Data