mirror of
https://github.com/yurymuski/nginx-http3.git
synced 2026-09-26 22:16:10 +00:00
readme update
This commit is contained in:
@@ -3,4 +3,10 @@ Nginx compiled with BoringSSL and quiche for HTTP3 support
|
||||
|
||||
Image is super large ~2GB, recommed to use:
|
||||
|
||||
https://github.com/RanadeepPolavarapu/docker-nginx-http3
|
||||
https://github.com/RanadeepPolavarapu/docker-nginx-http3
|
||||
|
||||
usage:
|
||||
- get certs from certbot in /etc/letsencrypt/
|
||||
- create nginx.conf like in example
|
||||
|
||||
`docker run --name nginx -d --net host -v /etc/letsencrypt/:/opt/nginx/certs/ -v /opt/nginx/conf/nginx.conf:/opt/nginx/conf/nginx.conf ymuski/nginx-quic:1.16.1`
|
||||
@@ -0,0 +1,44 @@
|
||||
worker_processes 1;
|
||||
|
||||
events {
|
||||
worker_connections 1024;
|
||||
}
|
||||
|
||||
http {
|
||||
|
||||
# include mime.types;
|
||||
# default_type application/octet-stream;
|
||||
# sendfile on;
|
||||
|
||||
server {
|
||||
# Enable QUIC and HTTP/3.
|
||||
listen 443 quic reuseport;
|
||||
|
||||
# Enable HTTP/2 (optional).
|
||||
listen 443 ssl http2;
|
||||
|
||||
server_name your_domain;
|
||||
|
||||
ssl_certificate /opt/nginx/certs/live/your_domain/fullchain.pem;
|
||||
ssl_certificate_key /opt/nginx/certs/live/your_domain/privkey.pem;
|
||||
|
||||
# Enable all TLS versions (TLSv1.3 is required for QUIC).
|
||||
ssl_protocols TLSv1.3;
|
||||
|
||||
ssl_early_data on;
|
||||
|
||||
#proxy_set_header Early-Data $ssl_early_data;
|
||||
|
||||
if ($host != "your_domain") {
|
||||
return 404;
|
||||
}
|
||||
|
||||
# Add Alt-Svc header to negotiate HTTP/3.
|
||||
add_header alt-svc 'h3-24=":443"; ma=86400, h3-23=":443"; ma=86400';
|
||||
|
||||
location / {
|
||||
root html;
|
||||
index index.html index.htm;
|
||||
}
|
||||
}
|
||||
}
|
||||
Reference in New Issue
Block a user