add cert
This commit is contained in:
3
cert.renew
Executable file
3
cert.renew
Executable file
@@ -0,0 +1,3 @@
|
|||||||
|
#!/bin/bash
|
||||||
|
# https://habr.com/ru/articles/735712/
|
||||||
|
certbot certonly --manual --preferred-challenges http -d "kornerr.ru"
|
||||||
18
nginx/cfg
18
nginx/cfg
@@ -1,11 +1,17 @@
|
|||||||
|
# Redirect HTTP to HTTPS
|
||||||
server {
|
server {
|
||||||
listen 80 default_server;
|
listen 80;
|
||||||
listen [::]:80 default_server;
|
server_name kornerr.ru;
|
||||||
|
return 301 https://$server_name$request_uri;
|
||||||
|
}
|
||||||
|
|
||||||
|
server {
|
||||||
|
listen 443 ssl;
|
||||||
|
server_name kornerr.ru;
|
||||||
|
|
||||||
|
ssl_certificate /etc/encrypt/fullchain.pem;
|
||||||
|
ssl_certificate_key /etc/encrypt/privkey.pem;
|
||||||
|
|
||||||
# SSL configuration
|
|
||||||
#
|
|
||||||
# listen 443 ssl default_server;
|
|
||||||
# listen [::]:443 ssl default_server;
|
|
||||||
#
|
#
|
||||||
# Note: You should disable gzip for SSL traffic.
|
# Note: You should disable gzip for SSL traffic.
|
||||||
# See: https://bugs.debian.org/773332
|
# See: https://bugs.debian.org/773332
|
||||||
|
|||||||
Reference in New Issue
Block a user