实验特性

http2启用
仅允许TLS1.3
pull/355/head
wulabing 2019-11-25 10:58:12 +08:00
parent 298b0083a0
commit a926a55b78
1 changed files with 2 additions and 2 deletions

View File

@ -369,10 +369,10 @@ nginx_conf_add(){
touch ${nginx_conf_dir}/v2ray.conf touch ${nginx_conf_dir}/v2ray.conf
cat>${nginx_conf_dir}/v2ray.conf<<EOF cat>${nginx_conf_dir}/v2ray.conf<<EOF
server { server {
listen 443 ssl; listen 443 ssl http2;
ssl_certificate /data/v2ray.crt; ssl_certificate /data/v2ray.crt;
ssl_certificate_key /data/v2ray.key; ssl_certificate_key /data/v2ray.key;
ssl_protocols TLSv1 TLSv1.1 TLSv1.2 TLSv1.3; ssl_protocols TLSv1.3;
ssl_ciphers TLS13-AES-256-GCM-SHA384:TLS13-CHACHA20-POLY1305-SHA256:TLS13-AES-128-GCM-SHA256:TLS13-AES-128-CCM-8-SHA256:TLS13-AES-128-CCM-SHA256:EECDH+CHACHA20:EECDH+CHACHA20-draft:EECDH+ECDSA+AES128:EECDH+aRSA+AES128:RSA+AES128:EECDH+ECDSA+AES256:EECDH+aRSA+AES256:RSA+AES256:EECDH+ECDSA+3DES:EECDH+aRSA+3DES:RSA+3DES:!MD5; ssl_ciphers TLS13-AES-256-GCM-SHA384:TLS13-CHACHA20-POLY1305-SHA256:TLS13-AES-128-GCM-SHA256:TLS13-AES-128-CCM-8-SHA256:TLS13-AES-128-CCM-SHA256:EECDH+CHACHA20:EECDH+CHACHA20-draft:EECDH+ECDSA+AES128:EECDH+aRSA+AES128:RSA+AES128:EECDH+ECDSA+AES256:EECDH+aRSA+AES256:RSA+AES256:EECDH+ECDSA+3DES:EECDH+aRSA+3DES:RSA+3DES:!MD5;
server_name serveraddr.com; server_name serveraddr.com;
index index.html index.htm; index index.html index.htm;