nginx php-fpm "Access Denied" on Centos


nginx php-fpm "Access Denied" on Centos

我在索引.php文件上收到"访问被拒绝"。我在我的服务器上使用触摸命令创建了测试.php并且它正在工作。

我删除了索引.php并使用touch命令和c/p索引创建了索引.php.php源新索引.php文件,然后我检查了错误.log现在问题发生在另一个php文件上。

一切都在工作,今天这个问题开始了。此配置也正常工作,没有更改,并且发生了此问题。

这是我的配置文件。

/etc/nginx/conf.d/default.conf

server {
    listen 80;
    server_name X.X.X.X;
    root /var/www/domain.com;
    index index.php;
    location / {
        try_files $uri $uri/ /index.php$is_args$args;
    }
    location ~ '.php$ {
        try_files $uri /index.php =404;
        fastcgi_pass 127.0.0.1:9000;
        fastcgi_split_path_info ^(.+'.php)(/.+)$;
        fastcgi_index index.php;
        fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
        include fastcgi_params;
    }
    error_page 404 /404.html;
    location = /404.html {
        root /var/www/domain.com;
    }
    error_page 500 502 503 504 /50x.html;
    location = /50x.html {
        root /var/www/domain.com;
    }
}

/var/www/domain.com/

drwxr-xr-x.  8 nginx nginx  4096 Nov 16 16:39 .
drwxr-xr-x.  5 nginx nginx  4096 Oct 30 20:47 ..
-rwxr-xr-x.  1 nginx nginx   146 Jun  1 18:16 CONTRIBUTING.md
drwxr-xr-x. 12 nginx nginx  4096 Oct 30 23:36 app
-rwxr-xr-x.  1 nginx nginx  2452 Jun  1 18:16 artisan
drwxr-xr-x.  2 nginx nginx  4096 Oct 30 23:36 assets
drwxr-xr-x.  2 nginx nginx  4096 Oct 30 23:36 bootstrap
-rwxr-xr-x.  1 nginx nginx   697 Jun  1 18:16 composer.json
-rwxr-xr-x.  1 nginx nginx 58540 Oct  1 00:19 composer.lock
-rwxr-xr-x.  1 nginx nginx     0 Jun  1 18:16 favicon.ico
-rwxr-xr-x.  1 nginx nginx  1580 Oct 31 00:05 index.php
drwxr-xr-x.  2 nginx nginx  4096 Oct 30 23:36 packages
-rwxr-xr-x.  1 nginx nginx   567 Jun  1 18:16 phpunit.xml
drwxr-xr-x.  2 nginx nginx  4096 Oct 30 23:55 public
-rwxr-xr-x.  1 nginx nginx  2051 Jun  1 18:16 readme.md
-rwxr-xr-x.  1 nginx nginx    24 Jun  1 18:16 robots.txt
-rwxr-xr-x.  1 nginx nginx   519 Jun  1 18:16 server.php
-rwxr-xr-x.  1 nginx nginx    41 Nov 16 16:39 test.php
drwxr-xr-x. 20 nginx nginx  4096 Oct 30 23:36 vendor

/etc/nginx/nginx.conf

user              nginx;

/etc/php-fpm.d/www.conf : 用户 = nginx 组 = nginx

/var/log/nginx/error.log

Unable to open primary script: /var/www/domain.com/index.php (Permission denied)" while reading response header from upstream, client: *, server: *, request: "GET / HTTP/1.1", upstream: "fastcgi://127.0.0.1:9000", host: "*"
2014/11/16 18:27:54 [error] 5070#0: *21 FastCGI sent in stderr: "PHP message: PHP Warning:  Unknown: failed to open stream: Permission denied in Unknown on line 0

删除索引后.php并使用触摸命令创建相同的文件:

PHP message: PHP Fatal error:  require(): Failed opening required '/var/www/domain.com/bootstrap/autoload.php'

我刚刚花了一整天的时间在同一个问题上,最终发现是selinux导致了这个问题。

我没有确切搜索哪个设置可能有问题,只是禁用了整个事情(SELINUX=disabled in /etc/selinux/config和重新启动),最后php-fpm正常工作。

感谢您的回答 - 这与我遇到的问题"拒绝访问"相同,您的解决方案引导我走上了正确的道路。

请注意,您可以这样做,而不是完全禁用 SELINUX:

$ sudo setsebool -P httpd_read_user_content 1

我目前的设置是使用CentOS 7.7,NGINX 1.17.3,PHP-FPM 7.3.9。