无法 运行 Docker 上的 Nginx HTTPS 网络服务器
Unable to run Nginx HTTPS webserver on Docker
我一直在尝试构建一个 Docker 容器来在我的自定义域上设置 Nginx 网络服务器,例如example.com
,使用 SSL。这是我的 Dockerfile
:
FROM node:latest as build-stage
WORKDIR /app
COPY package*.json ./
RUN npm install
COPY ./ .
RUN npm run build
FROM nginx as production-stage
RUN mkdir /app
COPY --from=build-stage /app/dist /app
COPY nginx.conf /etc/nginx/nginx.conf
nginx.conf
:
user nginx;
worker_processes 1;
error_log /var/log/nginx/error.log warn;
pid /var/run/nginx.pid;
events {
worker_connections 1024;
}
http {
include /etc/nginx/mime.types;
default_type application/octet-stream;
log_format main '$remote_addr - $remote_user [$time_local] "$request" '
'$status $body_bytes_sent "$http_referer" '
'"$http_user_agent" "$http_x_forwarded_for"';
access_log /var/log/nginx/access.log main;
sendfile on;
keepalive_timeout 65;
server {
listen [::]:443 ssl ipv6only=on; # managed by Certbot
listen 443 ssl; # managed by Certbot
ssl_certificate /etc/letsencrypt/live/example.com/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/letsencrypt/live/example.com/privkey.pem; # managed by Certbot
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
server_name example.com; # managed by Certbot
location / {
root /app;
index index.html;
try_files $uri $uri/ /index.html;
}
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root /usr/share/nginx/html;
}
}
server {
if ($host = example.com) {
return 301 https://$host$request_uri;
} # managed by Certbot
listen 80 ;
listen [::]:80 ;
server_name example.com;
return 404; # managed by Certbot
}
}
然后:
sudo docker build . -t app
sudo docker run -v /etc/letsencrypt/:/etc/letsencrypt/:ro -d -p 443 app
但是,当我访问http://example.com
或https://example.com
时,网站什么也没有显示,然后连接超时。但是当我访问外部 IP 地址 xx.xxx.xx.xxx/
时,会显示 Nginx 默认页面。我做错了什么?
主机上安装了nginx,监听80端口,所以用了另一个端口
docker run -d -p 8080:80 my-app
然后尝试再次访问 http://example.com:8080
。
或者关闭主机上的 nginx 并使用端口 80。
解决方案比我想象的要容易。
首先,我卸载了宿主机上的nginx,让容器可以连接80端口(其实不需要卸载,用sudo service nginx stop
停止nginx服务即可) .
然后,问题出在以下行,端口参数上:
sudo docker run -v /etc/letsencrypt/:/etc/letsencrypt/:ro -d -p 443 app
将其从 -p 443
更改为 -p 80:80 -p 443:443
以启用 HTTP 和 HTTPS 连接,现在它可以正常工作。
我一直在尝试构建一个 Docker 容器来在我的自定义域上设置 Nginx 网络服务器,例如example.com
,使用 SSL。这是我的 Dockerfile
:
FROM node:latest as build-stage
WORKDIR /app
COPY package*.json ./
RUN npm install
COPY ./ .
RUN npm run build
FROM nginx as production-stage
RUN mkdir /app
COPY --from=build-stage /app/dist /app
COPY nginx.conf /etc/nginx/nginx.conf
nginx.conf
:
user nginx;
worker_processes 1;
error_log /var/log/nginx/error.log warn;
pid /var/run/nginx.pid;
events {
worker_connections 1024;
}
http {
include /etc/nginx/mime.types;
default_type application/octet-stream;
log_format main '$remote_addr - $remote_user [$time_local] "$request" '
'$status $body_bytes_sent "$http_referer" '
'"$http_user_agent" "$http_x_forwarded_for"';
access_log /var/log/nginx/access.log main;
sendfile on;
keepalive_timeout 65;
server {
listen [::]:443 ssl ipv6only=on; # managed by Certbot
listen 443 ssl; # managed by Certbot
ssl_certificate /etc/letsencrypt/live/example.com/fullchain.pem; # managed by Certbot
ssl_certificate_key /etc/letsencrypt/live/example.com/privkey.pem; # managed by Certbot
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
server_name example.com; # managed by Certbot
location / {
root /app;
index index.html;
try_files $uri $uri/ /index.html;
}
error_page 500 502 503 504 /50x.html;
location = /50x.html {
root /usr/share/nginx/html;
}
}
server {
if ($host = example.com) {
return 301 https://$host$request_uri;
} # managed by Certbot
listen 80 ;
listen [::]:80 ;
server_name example.com;
return 404; # managed by Certbot
}
}
然后:
sudo docker build . -t app
sudo docker run -v /etc/letsencrypt/:/etc/letsencrypt/:ro -d -p 443 app
但是,当我访问http://example.com
或https://example.com
时,网站什么也没有显示,然后连接超时。但是当我访问外部 IP 地址 xx.xxx.xx.xxx/
时,会显示 Nginx 默认页面。我做错了什么?
主机上安装了nginx,监听80端口,所以用了另一个端口
docker run -d -p 8080:80 my-app
然后尝试再次访问 http://example.com:8080
。
或者关闭主机上的 nginx 并使用端口 80。
解决方案比我想象的要容易。
首先,我卸载了宿主机上的nginx,让容器可以连接80端口(其实不需要卸载,用sudo service nginx stop
停止nginx服务即可) .
然后,问题出在以下行,端口参数上:
sudo docker run -v /etc/letsencrypt/:/etc/letsencrypt/:ro -d -p 443 app
将其从 -p 443
更改为 -p 80:80 -p 443:443
以启用 HTTP 和 HTTPS 连接,现在它可以正常工作。