mirror of
https://github.com/yurymuski/nginx-http3.git
synced 2026-09-26 22:16:10 +00:00
readme update
This commit is contained in:
@@ -3,4 +3,10 @@ Nginx compiled with BoringSSL and quiche for HTTP3 support
|
|||||||
|
|
||||||
Image is super large ~2GB, recommed to use:
|
Image is super large ~2GB, recommed to use:
|
||||||
|
|
||||||
https://github.com/RanadeepPolavarapu/docker-nginx-http3
|
https://github.com/RanadeepPolavarapu/docker-nginx-http3
|
||||||
|
|
||||||
|
usage:
|
||||||
|
- get certs from certbot in /etc/letsencrypt/
|
||||||
|
- create nginx.conf like in example
|
||||||
|
|
||||||
|
`docker run --name nginx -d --net host -v /etc/letsencrypt/:/opt/nginx/certs/ -v /opt/nginx/conf/nginx.conf:/opt/nginx/conf/nginx.conf ymuski/nginx-quic:1.16.1`
|
||||||
@@ -0,0 +1,44 @@
|
|||||||
|
worker_processes 1;
|
||||||
|
|
||||||
|
events {
|
||||||
|
worker_connections 1024;
|
||||||
|
}
|
||||||
|
|
||||||
|
http {
|
||||||
|
|
||||||
|
# include mime.types;
|
||||||
|
# default_type application/octet-stream;
|
||||||
|
# sendfile on;
|
||||||
|
|
||||||
|
server {
|
||||||
|
# Enable QUIC and HTTP/3.
|
||||||
|
listen 443 quic reuseport;
|
||||||
|
|
||||||
|
# Enable HTTP/2 (optional).
|
||||||
|
listen 443 ssl http2;
|
||||||
|
|
||||||
|
server_name your_domain;
|
||||||
|
|
||||||
|
ssl_certificate /opt/nginx/certs/live/your_domain/fullchain.pem;
|
||||||
|
ssl_certificate_key /opt/nginx/certs/live/your_domain/privkey.pem;
|
||||||
|
|
||||||
|
# Enable all TLS versions (TLSv1.3 is required for QUIC).
|
||||||
|
ssl_protocols TLSv1.3;
|
||||||
|
|
||||||
|
ssl_early_data on;
|
||||||
|
|
||||||
|
#proxy_set_header Early-Data $ssl_early_data;
|
||||||
|
|
||||||
|
if ($host != "your_domain") {
|
||||||
|
return 404;
|
||||||
|
}
|
||||||
|
|
||||||
|
# Add Alt-Svc header to negotiate HTTP/3.
|
||||||
|
add_header alt-svc 'h3-24=":443"; ma=86400, h3-23=":443"; ma=86400';
|
||||||
|
|
||||||
|
location / {
|
||||||
|
root html;
|
||||||
|
index index.html index.htm;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
Reference in New Issue
Block a user