Home  >  Article  >  Operation and Maintenance  >  nginx reverse proxy two different servers

nginx reverse proxy two different servers

步履不停
步履不停Original
2019-06-22 11:21:066377browse

nginx reverse proxy two different servers

1. What is a reverse proxy:

The reverse proxy server is installed on The server side relieves the server's workload by buffering frequently requested pages, forwards client requests to the target server on the internal network, and returns the results obtained from the server to the client requesting a connection on the Internet. The proxy server and the target host appear together as a server to the outside world.

2. The main function of reverse proxy:

Currently, web websites use reverse proxy. In addition to preventing vicious attacks from the external network on the internal network server, caching can reduce server pressure and access. In addition to security control, load balancing can also be performed to distribute user requests to multiple servers.

3. Nginx configuration reverse proxy:

Nginx, as a popular reverse proxy server in recent years, is installed on the destination host and is mainly used to forward client requests. There are multiple backends The http server provides services, and the function of nginx is to forward the request to the subsequent server and decide which target host to handle the current request.

3.1 Configuration target:

Two web servers have been built on the intranet, namely 10.0.5.87 and 10.0.5.123. Now we need to use Nginx to build a reverse proxy server so that:

- The two web servers can be accessed through the proxy server;

- The header fields in the request package can be modified;

- Enable the cache function;

3.2 Implementation Method:

nginx configuration file modification:

#配置cache模块
proxy_cache_path /nginx/cache/first levels=1:2 keys_zone=first:20m max_size=1g;
server {
        #侦听www.local_host.ik的80端口
        listen       80;
        server_name  www.local_host.ik;
        #对aspx后缀的进行负载均衡请求
    location / {
                # root   /root;#定义服务器的默认网站根目录位置
                index index.php index.html index.htm;#定义首页索引文件的名称
                proxy_pass  http://10.0.5.87:8080/;#请求转向定义的服务器
                #以下是一些反向代理的配置可删除.
                proxy_redirect off;
                #后端的Web服务器可以通过X-Forwarded-For获取用户真实IP
                proxy_set_header Host $host;
                proxy_set_header X-Real-IP $remote_addr;
                proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
                client_max_body_size 10m;       #允许客户端请求的最大单文件字节数
                client_body_buffer_size 128k;   #缓冲区代理缓冲用户端请求的最大字节数,
                proxy_connect_timeout 90;       #nginx跟后端服务器连接超时时间(代理连接超时)
                proxy_send_timeout 90;          #后端服务器数据回传时间(代理发送超时)
                proxy_read_timeout 90;          #连接成功后,后端服务器响应时间(代理接收超时)
                proxy_buffer_size 4k;           #设置代理服务器(nginx)保存用户头信息的缓冲区大小
                proxy_buffers 4 32k;            #proxy_buffers缓冲区,网页平均在32k以下的话,这样设置
                proxy_busy_buffers_size 64k;    #高负荷下缓冲大小(proxy_buffers*2)
                proxy_temp_file_write_size 64k; #设定缓存文件夹大小,大于这个值,将从upstream服务器传
                #启用cache并指定大小
                proxy_cache first;
                proxy_cache_valid 200 10m;
    }
    add_header X-Via $server_addr;
    add_header X_cache_hit $upstream_cache_status;
}
#第二个虚拟服务器
server {
        #侦听www.fengyanjiao.ik的80端口
        listen       80;
        server_name  www.fengyanjiao.ik;
        #对aspx后缀的进行负载均衡请求
    location / {
                # root   /root;#定义服务器的默认网站根目录位置
                index index.php index.html index.htm;#定义首页索引文件的名称
                proxy_pass  http://10.0.5.123:5004/;#请求转向定义的服务器
                #以下是一些反向代理的配置可删除.
                proxy_redirect off;
                #后端的Web服务器可以通过X-Forwarded-For获取用户真实IP
                proxy_set_header Host $host;
                proxy_set_header X-Real-IP $remote_addr;
                proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
                client_max_body_size 10m;       #允许客户端请求的最大单文件字节数
                client_body_buffer_size 128k;   #缓冲区代理缓冲用户端请求的最大字节数,
                proxy_connect_timeout 90;       #nginx跟后端服务器连接超时时间(代理连接超时)
                proxy_send_timeout 90;          #后端服务器数据回传时间(代理发送超时)
                proxy_read_timeout 90;          #连接成功后,后端服务器响应时间(代理接收超时)
                proxy_buffer_size 4k;           #设置代理服务器(nginx)保存用户头信息的缓冲区大小
                proxy_buffers 4 32k;            #proxy_buffers缓冲区,网页平均在32k以下的话,这样设置
                proxy_busy_buffers_size 64k;    #高负荷下缓冲大小(proxy_buffers*2)
                proxy_temp_file_write_size 64k; #设定缓存文件夹大小,大于这个值,将从upstream服务器传
    }
}

Client hosts file configuration:

127.0.0.1   localhost localhost.localdomain localhost4 localhost4.localdomain4
::1         localhost localhost.localdomain localhost6 localhost6.localdomain6
192.168.183.22 www.fengyanjiao.ik
192.168.183.22 www.local_host.ik

3.3 Test:

3.3.1 Initiate a request on the client (No cache):

curl www.fengyanjiao.ik

You can see the response packet. Capturing packets on the real server 10.0.5.123, you can see the proxy http request message. Since this is a dynamic page, it will not be cached.

3.3.2 Initiate a request on the client (with cache):

curl www.local_host.ik

You can see the response packet. Capturing packets on the real server 10.0.5.87, you can see the proxy http request message. After this request, you can see the cache file 4a0993df8ef6191d1b1e12fa56c804c3 in the proxy server /nginx/cache/first/3/4c directory.

The next time you request www.local_host.ik on the client, capture the packet on the client and you will see it.

For more Nginx related technical articles, please visit the Nginx Tutorial column to learn!

The above is the detailed content of nginx reverse proxy two different servers. For more information, please follow other related articles on the PHP Chinese website!

Statement:
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn