
时间:2017-11-10 15:04:13

标签: django nginx gunicorn django-staticfiles


nginx .conf文件

 upstream sample_project_server {
  # fail_timeout=0 means we always retry an upstream even if it failed
  # to return a good HTTP response (in case the Unicorn master nukes a
  # single worker for timing out).
  server unix:/home/me/SPEnv/run/gunicorn.sock fail_timeout=0;
server {

listen   800;
server_name <your domain name>;

client_max_body_size 4G;
access_log /home/me/logs/nginx-access.log;
error_log /home/me/logs/nginx-error.log;

location /static {
    root   /home/me/DjangoProjects/SP/SP;

location / {

    # an HTTP header important enough to have its own Wikipedia entry:
    proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;

    # enable this if and only if you use HTTPS, this helps Rack
    # set the proper protocol for doing redirects:
    # proxy_set_header X-Forwarded-Proto https;

    # pass the Host: header from the client right along so redirects
    # can be set properly within the Rack application
    proxy_set_header Host $http_host;

    # we don't want nginx trying to do something clever with
    # redirects, we set the Host: header above already.
    proxy_redirect off;

    # set "proxy_buffering off" *only* for Rainbows! when doing
    # Comet/long-poll stuff.  It's also safe to set if you're
    # using only serving fast clients with Unicorn + nginx.
    # Otherwise you _want_ nginx to buffer responses to slow
    # clients, really.
    # proxy_buffering off;

    # Try to serve static files from nginx, no point in making an
    # *application* server like Unicorn/Rainbows! serve static files.
    if (!-f $request_filename) {
        proxy_pass http://sample_project_server;

# Error pages
error_page 500 502 503 504 /500.html;
location = /500.html {
    root   /home/me/DjangoProjects/SP/SP;




STATIC_URL = '/static/'
STATIC_ROOT = '/home/me/DjangoProjects/SP/SP/static/'
    # os.path.join(BASE_DIR, 'SP','static/admin'),

2 个答案:

答案 0 :(得分:1)




答案 1 :(得分:0)

我有同样的问题。我在Centos 7.6上的Nginx服务器无法访问路径/home/user/app/mysyte/static/中的静态文件夹。在/var/log/nginx/error.log中出现相同的错误

open() "/home/user/app/mysyte/static/*.css" failed (13: Permission denied)


  1. 运行命令getenforce
  2. 如果强制执行-cat /var/log/audit/audit.log | grep nginx


type=AVC msg=audit(1558033633.723:201): avc:  denied  { read } for  pid=7758 comm="nginx" name="responsive.css" dev="dm-0" ino=17312394 scontext=system_u:system_r:httpd_t:s0 tcontext=unconfined_u:object_r:user_home_t:s0 tclass=file permissive=0
type=SYSCALL msg=audit(1558033633.723:201): arch=c000003e syscall=2 success=no exit=-13 a0=564f710dd55d a1=800 a2=0 a3=68632f656d6f682f items=0 ppid=7757 pid=7758 auid=4294967295 uid=998 gid=996 euid=998 suid=998 fsuid=998 egid=996 sgid=996 fsgid=996 tty=(none) ses=4294967295 comm="nginx" exe="/usr/sbin/nginx" subj=system_u:system_r:httpd_t:s0 key=(null)


  1. 运行命令grep yours_audit_id /var/log/audit/audit.log | audit2why


[root@uwsgi ~]# grep 1558034479.384:221 /var/log/audit/audit.log | audit2why
type=AVC msg=audit(1558034479.384:221): avc:  denied  { read } for  pid=7758 comm="nginx" name="responsive.css" dev="dm-0" ino=17312394 scontext=system_u:system_r:httpd_t:s0 tcontext=unconfined_u:object_r:user_home_t:s0 tclass=file permissive=0

        Was caused by:
        The boolean httpd_read_user_content was set incorrectly.
        Allow httpd to read user content

        Allow access by executing:
        # setsebool -P httpd_read_user_content 1

因此,您在运行此命令时可以在此处setsebool -P httpd_read_user_content 1看到答案,因此您会看到静态内容