吕舒君

Results 100 comments of 吕舒君

这种方法似乎没有持久化的可能,略显繁琐

``` ## # SSL Settings ## #ssl_protocols TLSv1 TLSv1.1 TLSv1.2 TLSv1.3; # Dropping SSLv3, ref: POODLE #ssl_prefer_server_ciphers on; #ssl_ciphers "EECDH+AESGCM:EDH+AESGCM:ECDHE-RSA-AES128-GCM-SHA256:AES256+EECDH:DHE-RSA-AES128-GCM-SHA256:AES256+EDH:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA256:ECDHE-RSA-AES256-SHA:ECDHE-RSA-AES128-SHA:DHE-RSA-AES256-SHA256:DHE-RSA-AES128-SHA256:DHE-RSA-AES256-SHA:DHE-RSA-AES128-SHA:ECDHE-RSA-DES-CBC3-SHA:EDH-RSA-DES-CBC3-SHA:AES256-GCM-SHA384:AES128-GCM-SHA256:AES256-SHA256:AES128-SHA256:AES256-SHA:AES128-SHA:DES-CBC3-SHA:HIGH:!aNULL:!eNULL:!EXPORT:!DES:!MD5:!PSK:!RC4"; # intermediate configuration ssl_protocols TLSv1.2 TLSv1.3; ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:DHE-RSA-CHACHA20-POLY1305; ssl_prefer_server_ciphers off;...

但是似乎还是没有给出解决方案 ---- 回复的原邮件 ---- | 发件人 | ***@***.***> | | 发送日期 | 2024年04月03日 15:54 | | 收件人 | chaitin/SafeLine ***@***.***> | | 抄送人 | 吕舒君 ***@***.***>, Comment ***@***.***> | |...

调整后已正常,上面的配置可直接使用

不需要的其实,nginx.conf直接改即可

不会啊,没问题的,再不放心留个原始nginx.conf的备份足够了

我测试了一下,并没有问题。你可以贴出你的/etc/nginx/custom_params/backend_1配置

直接修改nginx.conf,在容器外修改,不要进容器

我这里测试是没有问题的,你修改完以后有没有执行`docker exec safeline-tengine nginx -s reload`来reload?