This topic created in 2488 days ago, the information mentioned may be changed or developed.
5 replies • 2019-08-17 16:31:02 +08:00
 |
|
2
yongzhz Aug 17, 2019
正确的应该是用导入的另外一个证书,不是颁发给这个域名的证书
|
 |
|
3
yongzhz Aug 17, 2019
ssl_certificate /usr/local/nginx/ssl/tsmsweb/yjsltsms.crt; #服务器证书位置 ssl_certificate_key /usr/local/nginx/ssl/tsmsweb/yjsltsms.key; #服务器私钥 ssl_client_certificate /usr/local/nginx/ssl/tsmsweb/ca.crt; #CA 证书用于验证客户端证书的合法性 ssl_verify_client on; #开启对客户端的验证 ssl_protocols TLSv1 TLSv1.1 TLSv1.2; ssl_ciphers 'AES128+EECDH:AES128+EDH:!aNULL'; #加密算法 ssl_prefer_server_ciphers on; ssl_session_cache shared:SSL:10m; ssl_session_timeout 10m;
|
 |
|
4
yongzhz Aug 17, 2019
时不时的有机器有这种错误
|
 |
|
5
izoabr Aug 17, 2019
你是在服务器日志里看到的么
|