upstream phpfpm_xxx_stream { server 127.0.0.1:9000; keepalive 64; } server { server_name prodapi.xxx.com; root /var/www/htdocs/prod.xxx.com; index index.php; listen 443 ssl http2; listen [::]:443 ssl http2; root /var/www/htdocs/lp/v2/build/; ===> root "/..." ssl_certificate "/etc/nginx/ssl/xxx.pem"; ==> ssl_certificate "/..." ssl_certificate_key "/etc/nginx/ssl/xxx.key"; ==> ssl_certificate_key "/..." ssl_ciphers HIGH:!aNULL:!MD5; ==> ssl_ciphers ... ssl_session_timeout 5m; ssl_session_cache shared:SSL:50m; ssl_protocols TLSv1.2 TLSv1.3; # HSTS (ngx_http_headers_module is required) (15768000 seconds = 6 months) # add_header Strict-Transport-Security max-age=15768000; access_log /var/www/log/xxx.access.log; error_log '/var/www/log/xxx.error.log debug'; proxy_cookie_path ~(.*) "$1; SameSite=strict; secure; httponly"; location / { index index.php; try_files $uri /index.php?$query_string; } location /cc { alias /var/www/htdocs/xxx_landing_page_v2/build; index index.html; try_files $uri $uri/ /cc/index.html; } #location /ccnew { # alias /var/www/htdocs/xxx_landing_page_v2/build; # index index.html; # try_files $uri $uri/ /ccnew/index.html; # #} location /deploy { index index.php; try_files $uri $uri/ /deploy/index.php; } location /deployxxxv3 { index index.php; try_files $uri $uri/ /deployxxxv3/index.php; } location ~ \.php$ { fastcgi_pass phpfpm_xxx_stream; fastcgi_index index.php; fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name; include fastcgi_params; } }