Server Installation/Apache: Unterschied zwischen den Versionen
Erscheinungsbild
Inhalt gelöscht Inhalt hinzugefügt
→Default Config: Configs dokumentiert |
|||
| Zeile 70: | Zeile 70: | ||
=== Default Config === |
=== Default Config === |
||
* /etc/apache2/ports.conf |
|||
#NameVirtualHost *:80 |
|||
Listen 80 |
|||
<IfModule mod_ssl.c> |
|||
Listen 443 |
|||
</IfModule> |
|||
<IfModule mod_gnutls.c> |
|||
Listen 443 |
|||
</IfModule> |
|||
* /etc/apache2/conf.d/security |
* /etc/apache2/conf.d/security |
||
| Zeile 78: | Zeile 88: | ||
* /etc/apache2/sites-enabled/000-default |
* /etc/apache2/sites-enabled/000-default |
||
<VirtualHost *:80> |
<VirtualHost *:80> |
||
ServerAdmin admin@opennet-initiative.de |
|||
DocumentRoot /var/www |
|||
<Directory /> |
|||
Options FollowSymLinks |
|||
AllowOverride None |
|||
</Directory> |
|||
<Directory /var/www/> |
|||
Options Indexes FollowSymLinks MultiViews |
|||
AllowOverride None |
|||
Order allow,deny |
|||
allow from all |
|||
</Directory> |
|||
ErrorLog ${APACHE_LOG_DIR}/error.log |
|||
| ⚫ | |||
# Possible values include: debug, info, notice, warn, error, crit, |
|||
| ⚫ | |||
# alert, emerg. |
|||
| ⚫ | |||
| ⚫ | |||
</VirtualHost> |
</VirtualHost> |
||
* /etc/apache2/sites-enabled/001-default-ssl |
* /etc/apache2/sites-enabled/001-default-ssl |
||
<IfModule mod_ssl.c> |
<IfModule mod_ssl.c> |
||
<VirtualHost _default_:443> |
<VirtualHost _default_:443> |
||
ServerAdmin admin@opennet-initiative.de |
|||
DocumentRoot /var/www |
|||
<Directory /> |
|||
Options FollowSymLinks |
|||
AllowOverride None |
|||
</Directory> |
|||
<Directory /var/www/> |
|||
Options Indexes FollowSymLinks MultiViews |
|||
AllowOverride None |
|||
Order allow,deny |
|||
allow from all |
|||
</Directory> |
|||
ErrorLog ${APACHE_LOG_DIR}/error.log |
|||
# Possible values include: debug, info, notice, warn, error, crit, |
|||
# alert, emerg. |
|||
LogLevel warn |
|||
CustomLog ${APACHE_LOG_DIR}/ssl_access.log combined |
|||
SSLEngine on |
|||
SSLCertificateFile /etc/ssl/aqua.opennet-initiative.de_certchain.crt |
|||
SSLCertificateKeyFile /etc/ssl/private/aqua.opennet-initiative.de.key |
|||
SSLCertificateChainFile /etc/ssl/certs/opennet-server_certchain.pem |
|||
<FilesMatch "\.(cgi|shtml|phtml|php)$"> |
|||
SSLOptions +StdEnvVars |
|||
</FilesMatch> |
|||
<Directory /usr/lib/cgi-bin> |
|||
SSLOptions +StdEnvVars |
|||
</Directory> |
|||
BrowserMatch "MSIE [2-6]" \ |
|||
nokeepalive ssl-unclean-shutdown \ |
|||
downgrade-1.0 force-response-1.0 |
|||
BrowserMatch "MSIE [17-9]" ssl-unclean-shutdown |
|||
</VirtualHost> |
</VirtualHost> |
||
</IfModule> |
</IfModule> |
||
Version vom 5. April 2014, 14:54 Uhr
| Protokoll | Host | VHost/Path | Service | Bemerkung |
|---|---|---|---|---|
| HTTPS | www | *opennet-initiative.de/transfer | WebDAV | Umziehen? Ehem. transfer., webdav. existiert |
| HTTP(S) | www | www.opennet-initiative.de/ | Redirect -> wiki | |
| HTTP(S) | www | www.opennet-initiative.de/download | Download | OK. |
| HTTP(S) | www | www.opennet-initiative.de/gallery/ | Gallery Rewrite | |
| HTTP(S) | www | www.opennet-initiative.de/graphen/ | Graph Rewrite | |
| HTTP(S) | www | list.opennet-initiative.de | Mailman Rewrite | |
| HTTP(S) | www | mail.opennet-initiative.de/mail | ?? | |
| HTTP(S) | www | mail.opennet-initiative.de/service | ?? | |
| HTTP(S) | www | olsr.opennet-initiative.de | SSID Rewrite | Löschen? |
| HTTP(S) | www | www.opennet-initiative.de/forum | Forum Rewrite | Löschen |
| HTTP(S) | wiki | wiki.opennet-initiative.de/wiki/ | MediaWiki Rewrite |
Default Config
- /etc/apache2/ports.conf
#NameVirtualHost *:80 Listen 80 <IfModule mod_ssl.c> Listen 443 </IfModule> <IfModule mod_gnutls.c> Listen 443 </IfModule>
- /etc/apache2/conf.d/security
ServerTokens Prod ServerSignature Off TraceEnable Off
- /etc/apache2/sites-enabled/000-default
<VirtualHost *:80>
ServerAdmin admin@opennet-initiative.de
DocumentRoot /var/www
<Directory />
Options FollowSymLinks
AllowOverride None
</Directory>
<Directory /var/www/>
Options Indexes FollowSymLinks MultiViews
AllowOverride None
Order allow,deny
allow from all
</Directory>
ErrorLog ${APACHE_LOG_DIR}/error.log
LogLevel warn
CustomLog ${APACHE_LOG_DIR}/access.log combined
</VirtualHost>
- /etc/apache2/sites-enabled/001-default-ssl
<IfModule mod_ssl.c>
<VirtualHost _default_:443>
ServerAdmin admin@opennet-initiative.de
DocumentRoot /var/www
<Directory />
Options FollowSymLinks
AllowOverride None
</Directory>
<Directory /var/www/>
Options Indexes FollowSymLinks MultiViews
AllowOverride None
Order allow,deny
allow from all
</Directory>
ErrorLog ${APACHE_LOG_DIR}/error.log
# Possible values include: debug, info, notice, warn, error, crit,
# alert, emerg.
LogLevel warn
CustomLog ${APACHE_LOG_DIR}/ssl_access.log combined
SSLEngine on
SSLCertificateFile /etc/ssl/aqua.opennet-initiative.de_certchain.crt
SSLCertificateKeyFile /etc/ssl/private/aqua.opennet-initiative.de.key
SSLCertificateChainFile /etc/ssl/certs/opennet-server_certchain.pem
<FilesMatch "\.(cgi|shtml|phtml|php)$">
SSLOptions +StdEnvVars
</FilesMatch>
<Directory /usr/lib/cgi-bin>
SSLOptions +StdEnvVars
</Directory>
BrowserMatch "MSIE [2-6]" \
nokeepalive ssl-unclean-shutdown \
downgrade-1.0 force-response-1.0
BrowserMatch "MSIE [17-9]" ssl-unclean-shutdown
</VirtualHost>
</IfModule>