Advertisement
Guest User

Untitled

a guest
Dec 21st, 2017
68
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Nginx 2.04 KB | None | 0 0
  1. user nginx;
  2. worker_processes  auto;
  3. worker_rlimit_nofile 100000;
  4. pid /var/run/nginx.pid;
  5.  
  6. load_module "modules/ngx_http_geoip_module.so";
  7.  
  8. error_log /var/log/nginx/error.log error;
  9.  
  10.  
  11. events {
  12.     worker_connections  10000;
  13.     use epoll;
  14. }
  15.  
  16.  
  17. http {
  18.     include     /etc/nginx/mime.types;
  19.     default_type  application/octet-stream;
  20.  
  21.     server_names_hash_max_size 16384;
  22.     server_names_hash_bucket_size 64;
  23.  
  24.  
  25.  
  26.     log_format  timelog  '$upstream_response_time $request_time "$upstream_addr" $remote_addr $http_CF_Connecting_IP [$time_local] $status "$sent_http_x_counter" "$request»' $host;
  27.     log_format  main  '$remote_addr $geoip_country_code $geoip_city - $remote_user [$time_local] "$request" '
  28.                         '$status $body_bytes_sent "$http_referer" '
  29.                         '"$http_user_agent" "$http_x_forwarded_for" $host';
  30.  
  31.     sendfile        on;
  32.     tcp_nopush      on;
  33.     tcp_nodelay     on;
  34.     server_tokens   off;
  35.  
  36.     proxy_buffer_size 16k;
  37.     proxy_buffers 32 16k;
  38.     proxy_read_timeout 300;
  39.     keepalive_timeout 30;
  40.     keepalive_requests 100;
  41.     reset_timedout_connection on;
  42.     client_max_body_size 10m;
  43.  
  44.     gzip on;
  45.     gzip_types text/css application/x-javascript application/javascript text/javascript text/plain;
  46.     gzip_comp_level 6;
  47.     gzip_min_length 100;
  48.     gzip_http_version 1.0;
  49.     gzip_proxied any;
  50.     gzip_disable "msie6";
  51.     gzip_vary on;
  52.  
  53.     ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
  54.     ssl_ciphers 'EECDH+ECDSA+AESGCM:EECDH+aRSA+AESGCM:EECDH+ECDSA+SHA384:EECDH+ECDSA+SHA256:EECDH+aRSA+SHA384:EECDH+aRSA+SHA256:EECDH+aRSA+RC4:EECDH:EDH+aRSA:RC4:!aNULL:!eNULL:!LOW:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!RC4';
  55.     ssl_session_cache shared:SSL:50m;
  56.     ssl_session_timeout 30m;
  57.     ssl_buffer_size 4k;
  58.     ssl_prefer_server_ciphers on;
  59.     resolver 8.8.8.8 8.8.4.4 ipv6=off;
  60.     resolver_timeout 2s;
  61.     ssl_stapling on;
  62.     ssl_stapling_verify on;
  63.     ssl_session_tickets off;
  64.     ssl_dhparam /etc/nginx/certs/dhparams.pem;
  65.  
  66.     proxy_next_upstream error invalid_header timeout http_500 http_502 http_503 http_504;
  67.  
  68.     include /etc/nginx/conf.d/*.conf;
  69.     include /etc/nginx/vhost.d/*.conf;
  70.  
  71. # END nginx.conf
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement