用户工具

站点工具


freebsd:network:nginx_doh

差别

这里会显示出您选择的修订版和当前版本之间的差别。

到此差别页面的链接

两侧同时换到之前的修订记录 前一修订版
后一修订版
前一修订版
freebsd:network:nginx_doh [2019/12/09 02:38]
Hshh 增加测试方式
freebsd:network:nginx_doh [2020/07/01 04:53] (当前版本)
Hshh [测试] 增加doh
行 35: 行 35:
  ....省略....  ....省略....
  ssl_protocols TLSv1.2 TLSv1.3;  ssl_protocols TLSv1.2 TLSv1.3;
- ssl_ciphers "EECDH+ECDSA+AESGCM EECDH+aRSA+AESGCM EECDH+ECDSA+SHA384 EECDH+ECDSA+SHA256 EECDH+aRSA+SHA384 EECDH+aRSA+SHA256 EECDH EDH+aRSA !aNULL !eNULL !LOW !3DES !MD5 !EXP !PSK !SRP !DSS !RC4";+ ssl_ciphers "TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA256";
  ssl_prefer_server_ciphers on;  ssl_prefer_server_ciphers on;
  ssl_session_cache shared:SSL:50m;  ssl_session_cache shared:SSL:50m;
行 65: 行 65:
 stream { stream {
  ssl_protocols TLSv1.2 TLSv1.3;  ssl_protocols TLSv1.2 TLSv1.3;
- ssl_ciphers "EECDH+ECDSA+AESGCM EECDH+aRSA+AESGCM EECDH+ECDSA+SHA384 EECDH+ECDSA+SHA256 EECDH+aRSA+SHA384 EECDH+aRSA+SHA256 EECDH EDH+aRSA !aNULL !eNULL !LOW !3DES !MD5 !EXP !PSK !SRP !DSS !RC4";+ ssl_ciphers "TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_128_GCM_SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA256";
  ssl_prefer_server_ciphers on;  ssl_prefer_server_ciphers on;
  #ssl_session_cache shared:SSL:50m;  #ssl_session_cache shared:SSL:50m;
行 76: 行 76:
  server 8.8.8.8:853;  server 8.8.8.8:853;
  server 8.8.4.4:853;  server 8.8.4.4:853;
- server 1.1.1.1:853; 
- server 1.0.0.1:853; 
  }  }
  server {  server {
行 90: 行 88:
 ==== 测试 ==== ==== 测试 ====
  
 +=== 使用 curl ===
 <code> <code>
 curl -v --doh-url https://dnsserver/dns-query http://example.com curl -v --doh-url https://dnsserver/dns-query http://example.com
 </code> </code>
 +
 +=== 使用 doh ===
 +参见 https://github.com/curl/doh
freebsd/network/nginx_doh.1575830299.txt.gz · 最后更改: 2019/12/09 02:38 由 Hshh

工业和信息化部备案管理系统网站 浙ICP备05015161号-1