On Tue, Oct 06, 2009 at 03:43:10PM +0200, Tomasz Pajor wrote: > Why limit_conn is not allowed in such a configuration? > > #http context > > limit_zone resp_zone $binary_remote_addr 64m; > geo $limit_conn { > default 1; > x.x.x.x/32 0; > z.z.z.z/32 0; > y.y.y.y/32 0; > } > > #server context > server { > listen 80; > >by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 08:33:12PM +0700, 1nsk.ru wrote: > Здравствуйте. > > А так не будет работать? > > set $cookie_user_id "0"; > if ($http_cookie !~ "user_id") { > set $cookie_user_id "1"; > } > > fastcgi_cache_key "$request_uri $cookie_user_id"; Если set/if/set поставить нby Igor Sysoev - Nginx Mailing List - Russian
On Thu, Oct 01, 2009 at 03:22:04PM +1000, Omar Kilani wrote: > Hi Igor, > > Are there any plans to add some sort of distributed SSL session cache > (like distcache for apache)? Not in near future. -- Igor Sysoev http://sysoev.ru/en/by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 03:44:32PM +0200, Tomasz Pajor wrote: > is SSLv2 disabled by default from this version? No, I forgot about this. > > Changes with nginx 0.8.18 06 Oct 2009 > > > > *) Feature: the "read_ahead" directive. > > > > *) Feature: now several "perl_modules" directive may be used.by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 09:18:53AM -0400, eternity wrote: > So, i made a bit progress > I took chrome which doesn't ask for risk, and exported chain > So, now, old version asks only once to add root CA and then it becomes silent > Now the question - how to add one more element in chain so old browsers won't even ask for adding CA > site: https://svpage.ru openssl s_client -connectby Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 04:01:20PM +0300, Max Baryshnikov wrote: > On Monday 05 October 2009 13:46:51 Max Baryshnikov wrote: > > Я что-то упускаю? > > Так все-таки. У всех вырезаются эти заголовки, или оно и не должно вырезаться? Патч. -- Игорь Сысоев http://sysoev.ruby Igor Sysoev - Nginx Mailing List - Russian
On Tue, Oct 06, 2009 at 03:11:31PM +0200, Stuart Mckeown wrote: > Igor Sysoev wrote: > > What is in error_log corresponding to these 404 errors ? > > 2009/10/05 13:24:50 14562#0: *4 open() > "/usr/local/nginx/html/wp-content/uploads/2009/04/wpshop.jpg" failed (2: > No such file or directory), client: 78.21.193.90, server: _, request: > "GET /wp-content/by Igor Sysoev - Nginx Mailing List - English
Изменения в nginx 0.8.18 06.10.2009 *) Добавление: директива read_ahead. *) Добавление: теперь можно использовать несколько директив perl_modules. *) Добавление: директивы limit_req_log_level и limit_conn_log_level. *) Исправby Igor Sysoev - Nginx Mailing List - Russian
On Tue, Oct 06, 2009 at 03:56:46PM +0400, Igor Sysoev wrote: > On Tue, Oct 06, 2009 at 03:46:48PM +0400, Igor Sysoev wrote: > > > On Sat, Oct 03, 2009 at 09:54:59AM -0400, Jim Ohlstein wrote: > > > > > Igor Sysoev wrote: > > > > On Fri, Oct 02, 2009 at 01:07:24PM -0400, Jim Ohlstein wrote: > > > > > > > >> Hello, > > >by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 08:40:49AM -0400, eternity wrote: > Hmm, the latest firefox also ask for security risk > google chrome and opera doesn't > how to make for all browsers be silent? Could you tell the site address ? -- Igor Sysoev http://sysoev.ru/en/by Igor Sysoev - Nginx Mailing List - English
Changes with nginx 0.8.18 06 Oct 2009 *) Feature: the "read_ahead" directive. *) Feature: now several "perl_modules" directive may be used. *) Feature: the "limit_req_log_level" and "limit_conn_log_level" directives. *) Bugfix: now "limit_req" directive conforms to the leaky bucketby Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 07:24:42PM +0700, 1nsk.ru wrote: > А как обернуть всё это дело в > > ? > if ($http_cookie !~ "user_id") { > #кэшируем только гостям > } > > А то в if нельзя fastcgi_store fastcgi_cache_key "localhost:9000$request_uri $cookie_user_id"; и на бэкенде выдаватby Igor Sysoev - Nginx Mailing List - Russian
On Tue, Oct 06, 2009 at 02:35:57PM +0200, Stuart Mckeown wrote: > Igor Sysoev wrote: > > > > It's seems you need > > > > location /wp-content/uploads/ { > > proxy_pass http://74.207.242.38; > > } > > Appreciate all the help so far guys :) It's been a tough one to figure > out. > > The Proxy pass as you can see passes the URLby Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 07:54:20AM -0400, eternity wrote: > Sorry, I was confused a bit > a have already intermidiate certificate, which was(I suppose) issued by comodo. > I do > > openssl s_client -connect www.host.com:443 > > And it returns errors > > Verify return code: 21 (unable to verify the first certificate) This is normal, because you need to supply roby Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 03:46:48PM +0400, Igor Sysoev wrote: > On Sat, Oct 03, 2009 at 09:54:59AM -0400, Jim Ohlstein wrote: > > > Igor Sysoev wrote: > > > On Fri, Oct 02, 2009 at 01:07:24PM -0400, Jim Ohlstein wrote: > > > > > >> Hello, > > >> > > >> I'm seeing odd disk usage statistics for my cache. The cache is > > >by Igor Sysoev - Nginx Mailing List - English
On Sat, Oct 03, 2009 at 09:54:59AM -0400, Jim Ohlstein wrote: > Igor Sysoev wrote: > > On Fri, Oct 02, 2009 at 01:07:24PM -0400, Jim Ohlstein wrote: > > > >> Hello, > >> > >> I'm seeing odd disk usage statistics for my cache. The cache is > >> primarily of small files (images, javascript, and css) and sits on a > >> 128GB SSD using exby Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 06:50:06AM -0400, spall wrote: > С кешированием проксируемых запросов все понятно. > > Подскажите, как реализовать поддержку запросов на FastCGI ? http://sysoev.ru/nginx/docs/http/ngx_http_fastcgi_module.html#fastcgi_cache > И что будет с post запросамиby Igor Sysoev - Nginx Mailing List - Russian
On Tue, Oct 06, 2009 at 05:20:43AM -0400, eternity wrote: > and your_cert.crt - Is a self-signed certificate? No, this is not self-signed certificate. This is certificate that Comodo had signed for you. -- Igor Sysoev http://sysoev.ru/en/by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 05:06:11AM -0400, eternity wrote: > I mean cert file AddTrustExternalCARoot.crt from comodo Then you need to do cat AddTrustExternalCARoot.crt you_cert.crt > new_cert.crt; and use this new_cert.crt in ssl_certificate new_cert.crt; -- Igor Sysoev http://sysoev.ru/en/by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 04:58:09AM -0400, eternity wrote: > I'm sorry, but can you explain plz what should I do after downloading intermediate certificate?Because I Have a task to make old browsers work without errors, but I don't know about chained certeficate, I have only ROOT ca certificate, and chained was downloaded and installed before me What do you mean by ROOT ca certificate ? --by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 04:23:38AM -0400, eternity wrote: > It's from support.comodo.com > > I have .crt file with two certificates Have you downloaded Comodo's intermediate certificates at https://support.comodo.com/index.php?_m=downloads&_a=view&parentcategoryid=1&pcid=0&nav=0 and have concatinated them using cat you.crt comodo.crt > new.crt ? -- Igor Sysoevby Igor Sysoev - Nginx Mailing List - English
On Mon, Oct 05, 2009 at 04:00:23PM +0800, quan nexthop wrote: > Hi all: > > I try to setup the NGINX as a reverse-proxy to protect several webservers, > which lots of websites are running on. Yes, it is a virtual host :) > > abc.com |----------- ------- |virtualhost] ----/abc > directory > 123.com| > |--/123 directory > > the virtualhost port is 80. > >by Igor Sysoev - Nginx Mailing List - English
On Mon, Oct 05, 2009 at 10:35:13PM -0400, Chris Zimmerman wrote: > add_header isn't used for rewriting the header. Currently nginx supports > only "no-cache" and "max-age=###" values > in "Cache-Control. These values are affected by "expires" directive only. You may add any Cache-Control values via add_header. -- Igor Sysoev http://sysoev.ru/en/by Igor Sysoev - Nginx Mailing List - English
On Mon, Oct 05, 2009 at 01:35:34PM +0200, Stuart Mckeown wrote: > Hey guys, first time poster. Struggling to get nginx to proxy_pass > through to another server. > > Server 1: http://storecrowd.com/ (Nginx) > Server 2: http://storecrowd.com/blog/ (Nginx) Do you have two servers with the same ? > I've got nginx set up on server 1 to proxy_pass through to IP address > using:by Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 12:12:09AM -0600, Brian Henson wrote: > Try leaving the last / off of the /blog/. It would be written as //blog/ if > I'm not mistaken.(please anyone correct me if I'm wrong) No, this proxy_pass replaces "/blog/" part in URI to "/", i.e. "/blog/page.html" will be "/page.html". > -----Original Message----- > From: owneby Igor Sysoev - Nginx Mailing List - English
On Tue, Oct 06, 2009 at 03:14:28AM -0400, eternity wrote: > I have an nginx server as a frontend to apache. Nginx runs ssl with certificate that was bought and is valid. New versions of browsers(like opera 10) have no problems, but old(like 9.5 and some client-banking systems) show a message regarding certificate. What can I do to prevent this? What authority has signed the certificate ? Youby Igor Sysoev - Nginx Mailing List - English
On Sat, Oct 03, 2009 at 11:07:44PM +0100, Matt Goodall wrote: > I just noticed that the SSL module enables SSLv2 by default, > "ssl_protocols SSLv2 SSLv3 TLSv1 " (see > http://wiki.nginx.org/NginxHttpSslModule#ssl_protocols). > > Given that SSLv2 is generally considered "weak" these days > (http://en.wikipedia.org/wiki/Secure_Sockets_Layer#Security) and is &by Igor Sysoev - Nginx Mailing List - English
On Sun, Oct 04, 2009 at 10:49:10AM -0400, HAZE wrote: > We run a site that delivers large files and has many transfers going at the same time and we have noticed nginx slowing down and causing high iowait times. After running a strace we have seen this > > stat("/var/www/slavefilestore/8f/1o3VKtKeim", 0x7fffda168490) = -1 ENOENT (No such file or directory) > open("/varby Igor Sysoev - Nginx Mailing List - English
On Sat, Oct 03, 2009 at 09:57:52PM -0400, saiyan wrote: > > > RewriteRule /catalog/(.*) /catalog/$1 > RewriteRule /lib/(.*) /lib/$1 > RewriteRule /skins/(.*) /skins/$1 > RewriteRule /payments/(.*) /payments/$1 > RewriteRule /images/(.*) /images/$1 > RewriteRule /index\.php(.*) /index.php$1 > RewriteRule /admin\.php(.*) /admin.php$1 > RewriteRule ^(.*)$ /indeby Igor Sysoev - Nginx Mailing List - English
On Sat, Oct 03, 2009 at 09:36:20PM -0400, saiyan wrote: > Hello everybody here in NGINX > Hello Igor, and others. > > I need a help regarding rewrite problem > > Source: > > # > RewriteEngine on > # Some hostings require RewriteBase to be uncommented > # Example: > # Your store url is http://www.yourcompany.com/store/cart > # So "RewriteBase"by Igor Sysoev - Nginx Mailing List - English
![]() |
![]() |
![]() |
![]() |
|