NGINX 使用 cloudflare 重寫子域路徑會導致重定向過多

NGINX 使用 cloudflare 重寫子域路徑會導致重定向過多

我想實現這樣的 url 重寫:
https://documentation.domain.com/loginto https://app.domain.com/login
https://api.domain.com/loginto https://app.domain.com/login
,任何帶有 url {anything}.domain.com/login to 的 sudomainhttps://app.domain.com/login

https://app.domain.com/sdksto https://documentation.domain.com/sdks(保留所有查詢參數)
https://api.domain.com/sdksto https://documentation.domain.com/sdks(保留所有查詢參數)
,任何帶有 url {anything}.domain.com/sdks 的 sudomainhttps://documentation.domain.com/sdks

https://app.domain.com/restApito https://documentation.domain.com/restApi(保留所有查詢參數)
https://api.domain.com/restApito https://documentation.domain.com/restApi(保留所有查詢參數)
,任何帶有 url {anything}.domain.com/restApi 的 sudomainhttps://documentation.domain.com/restApi

這就是我目前所擁有的:

server {
        listen 443 ssl http2 default_server;
        listen [::]:443 ssl http2 default_server;

        ssl_certificate     /home/company/server/ssl/domain_cloudflare.pem;
        ssl_certificate_key /home/company/server/ssl/domain_cloudflare_privatekey.key;

        server_name www.*.domain.com *.domain.com;

        client_body_buffer_size     32k;
        client_header_buffer_size   8k;
        large_client_header_buffers 4 16k;

        location / {
                # First attempt to serve request as file, then
                # as directory, then fall back to displaying a 404.
                proxy_pass        https://localhost:8443;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
                proxy_set_header  Host $http_host;
        }

        location /login {
                # First attempt to serve request as file, then
                # as directory, then fall back to displaying a 404.
                proxy_pass        https://localhost:8443/login;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
                proxy_set_header  Host $http_host;
                return 302 https://app.domain.com/login;
        }

        location /restApi {
                # First attempt to serve request as file, then
                # as directory, then fall back to displaying a 404.
                proxy_pass        https://localhost:8443/restApi;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
                proxy_set_header  Host $http_host;
                return 302 https://app.domain.com/restApi;   
        }


        location /sdks {
                # First attempt to serve request as file, then
                # as directory, then fall back to displaying a 404.
                proxy_pass        https://localhost:8443/sdks;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
                proxy_set_header  Host $http_host;
                return 302 https://app.domain.com/sdks;
        }


        location /api {
                # First attempt to serve request as file, then
                # as directory, then fall back to displaying a 404.
                proxy_pass        https://localhost:8443/api;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
                proxy_set_header  Host $http_host;
                return 302 https://api.domain.com/api;
        }
}

Cloudflare SSL 我設定為完全嚴格。更改為完全/靈活不會改變任何內容。此設定大部分有效。這有效,但會導致 ERR_TOO_MANY_REDIRECTS 我該如何修正這個問題?這裡出了什麼問題?請在這件事上給我幫助

編輯:

server {
        listen 443 ssl http2;
        listen [::]:443 ssl http2;


        ssl_certificate     /home/company/domain/ssl/domain_cloudflare.pem;
        ssl_certificate_key /home/company/domain/ssl/domain_cloudflare_privatekey.key;


        server_name app.domain.com;

        client_body_buffer_size     32k;
        client_header_buffer_size   8k;
        large_client_header_buffers 4 16k;

        location / {
               proxy_pass        https://localhost:8443/login;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
               proxy_set_header  X-Forwarded-Host $http_host;
               proxy_set_header  X-Forwarded-Server $host;
               proxy_set_header  Host $http_host;
               proxy_set_header  X-Forwarded-Proto https;
#               return 302 https://app.domain.com/login;
        }

}

server {
        listen 443 ssl http2;
        listen [::]:443 ssl http2;


        ssl_certificate     /home/company/domain/ssl/domain_cloudflare.pem;
        ssl_certificate_key /home/company/domain/ssl/domain_cloudflare_privatekey.key;


        server_name documentation.domain.com;

        client_body_buffer_size     32k;
        client_header_buffer_size   8k;
        large_client_header_buffers 4 16k;

        location /sdks {
               proxy_pass        https://localhost:8443/sdks;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
               proxy_set_header  X-Forwarded-Host $http_host;
               proxy_set_header  X-Forwarded-Server $host;
               proxy_set_header  Host $http_host;
               proxy_set_header  X-Forwarded-Proto https;
#              return 302 https://documentation.domain.com/sdks;
        }

        location /restApi {
               proxy_pass        https://localhost:8443/restApi;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
               proxy_set_header  X-Forwarded-Host $http_host;
               proxy_set_header  X-Forwarded-Server $host;
               proxy_set_header  Host $http_host;
               proxy_set_header  X-Forwarded-Proto https;
#               return 302 https://documentation.domain.com/restApi;
        }

}

server {
        listen 443 ssl http2;
        listen [::]:443 ssl http2;


        ssl_certificate     /home/company/domain/ssl/domain_cloudflare.pem;
        ssl_certificate_key /home/company/domain/ssl/domain_cloudflare_privatekey.key;


        server_name api.domain.com;

        client_body_buffer_size     32k;
        client_header_buffer_size   8k;
        large_client_header_buffers 4 16k;

        location /api {
               proxy_pass        https://localhost:8443/;
                proxy_set_header  X-Real-IP $remote_addr;
                proxy_set_header  X-Forwarded-For $proxy_add_x_forwarded_for;
               proxy_set_header  X-Forwarded-Host $http_host;
               proxy_set_header  X-Forwarded-Server $host;
               proxy_set_header  Host $http_host;
               proxy_set_header  X-Forwarded-Proto https;
#               return 302 https://api.domain.com/;
        }

}

相關內容