防止 nginx 泄漏 cdn 后面的源站 IP
参考: https://blog.hicasper.com/post/114.html https://www.linuxprobe.com/ssl-expose-ip.html https://luotianyi.vc/5056.html 防御方法: nginx 1.19.4以上 server { listen 443 default_server; listen [::]:443 default_server; server_name _; ssl_reject_handshake on; return 444; } server { listen 80; server_name _; index index.html; root /www/server/nginx/html; #这里填写web默认目录 return 444; } server { listen 443 ssl; server_name _; ssl_certificate /xxx/ssl.crt; #