Jelajahi Sumber

Merge pull request #2239 from nginx-proxy/fix-rfc-5746

fix: always on session cache on HTTPS fallback listener
Richard Hansen 2 tahun lalu
induk
melakukan
068bf91e83
1 mengubah file dengan 2 tambahan dan 2 penghapusan
  1. 2 2
      nginx.tmpl

+ 2 - 2
nginx.tmpl

@@ -422,11 +422,11 @@ server {
             {{- if $globals.enable_ipv6 }}
             {{- if $globals.enable_ipv6 }}
     listen [::]:{{ $globals.external_https_port }} ssl http2; {{- /* Do not add `default_server` (see comment above). */}}
     listen [::]:{{ $globals.external_https_port }} ssl http2; {{- /* Do not add `default_server` (see comment above). */}}
             {{- end }}
             {{- end }}
+    ssl_session_cache shared:SSL:50m;
+    ssl_session_tickets off;
         {{- end }}
         {{- end }}
     {{ $globals.access_log }}
     {{ $globals.access_log }}
         {{- if $globals.default_cert_ok }}
         {{- if $globals.default_cert_ok }}
-    ssl_session_cache shared:SSL:50m;
-    ssl_session_tickets off;
     ssl_certificate /etc/nginx/certs/default.crt;
     ssl_certificate /etc/nginx/certs/default.crt;
     ssl_certificate_key /etc/nginx/certs/default.key;
     ssl_certificate_key /etc/nginx/certs/default.key;
         {{- else }}
         {{- else }}