![]() |
|
[How-TO] apache2 SSL ubuntu 14.04 - Printable Version +- Sentora Support Forums (https://senforums.mach-hosting.com) +-- Forum: Sentora Forum Archives (https://senforums.mach-hosting.com/forumdisplay.php?fid=5) +--- Forum: Sentora Public Support Forums v1.0.x (https://senforums.mach-hosting.com/forumdisplay.php?fid=32) +---- Forum: Community Guides & How-To's v1.0.x (https://senforums.mach-hosting.com/forumdisplay.php?fid=33) +---- Thread: [How-TO] apache2 SSL ubuntu 14.04 (/showthread.php?tid=994) |
[How-TO] apache2 SSL ubuntu 14.04 - Diablo925 - 02-06-2015 How To Create a SSL Certificate Enable SSL on you server 1: enable apache2 ssl Code: sudo a2enmod ssl
sudo service apache2 restart2: make a folder to the crt and key files Code: sudo mkdir /var/sentora/hostdata/username/ssl3: Create a Self Signed SSL Certificate Code: sudo openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout /var/sentora/hostdata/username/ssl/domain.tld.key -out /var/sentora/hostdata/username/ssl/domain.tld.crtCode: Generating a 2048 bit RSA private key
.............+++
................+++
writing new private key to '/var/sentora/hostdata/username/ssl/domain.tld.key'
-----
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----Code: Country Name (2 letter code) [AU]:US
State or Province Name (full name) [Some-State]:New York
Locality Name (eg, city) []:NYC
Organization Name (eg, company) [Internet Widgits Pty Ltd]:Name of company
Organizational Unit Name (eg, section) []: just press enter
Common Name (e.g. server FQDN or YOUR name) []: website name example.com
Email Address []:Email4: Enable Port 443 Code: nano /etc/sentora/configs/apache/httpd.confCode: # Now we include the generic VHOST configuration file that holds all Sentora user hosted vhost data
Include /etc/sentora/configs/apache/httpd-vhosts.confadd Code: <IfModule ssl_module>
Listen 443
</IfModule>Code: sudo service apache2 restartSetup SSL to website 5: Now log on to you sentora panel and go to Code: Module Admin --> Apache Config --> Override a Virtual Host Setting6: under Custom Entry: Code: </virtualHost>
<virtualhost *:443>
ServerName Domain.tld
ServerAlias www.domain.tld
ServerAdmin zadmin@localhost
DocumentRoot "/var/sentora/hostdata/Username/public_html/Domain_tld"
php_admin_value open_basedir "/var/sentora/hostdata/Username/public_html/Domain_tld:/var/sentora/temp/"
php_admin_value suhosin.executor.func.blacklist "passthru, show_source, shell_exec, system, pcntl_exec, popen, pclose, proc_open, proc_nice, proc_terminate, proc_get_status, proc_close, leak, apache_child_terminate, posix_kill, posix_mkfifo, posix_setpgid, posix_setsid, posix_setuid, escapeshellcmd, escapeshellarg, exec"
SSLEngine on
SSLCertificateFile /var/sentora/hostdata/username/ssl/domain.tld.crt
SSLCertificateKeyFile /var/sentora/hostdata/username/ssl/domain.tld.key
SSLProtocol -All +TLSv1 +TLSv1.1 +TLSv1.2
SSLCipherSuite ECDHE-RSA-AES256-SHA384:AES256-SHA256:RC4:HIGH:!MD5:!aNULL:!EDH:!A$
SSLHonorCipherOrder on
ErrorLog "/var/sentora/logs/domains/Username/Domain.tld-error.log"
CustomLog "/var/sentora/logs/domains/Username/Domain.tld-access.log" combined
CustomLog "/var/sentora/logs/domains/Username/Domain.tld-bandwidth.log" common
<Directory "/var/sentora/hostdata/Username/public_html/Domain_tld">
Options +FollowSymLinks -Indexes
AllowOverride All
Require all granted
</Directory>
AddType application/x-httpd-php .php3 .php
ErrorDocument 500 /_errorpages/500.html
ErrorDocument 403 /_errorpages/403.html
ErrorDocument 404 /_errorpages/404.html
ErrorDocument 510 /_errorpages/510.html
DirectoryIndex index.html index.htm index.php index.asp index.aspx index.jsp index.jspa index.shtml index.shtmnow wait to Daemon has run take about 5 min now hXXps://sitename.tld Works Thx Cantalupo and remember dont use Apple iPad to make guide ? RE: [How-TO] apache2 SSL ubuntu 14.04 - Cantalupo - 02-06-2015 Nice. RE: [How-TO] apache2 SSL ubuntu 14.04 - etienne7702 - 02-09-2015 Hi I get the following error when i restart apache [Sun Feb 08 12:37:23.360612 2015] [ssl:emerg] [pid 24145] AH02240: Server should be SSL-aware but has no certificate configured [Hint: SSLCertificateFile] (/etc/sentora/configs/apache/httpd-vhosts.conf:72) RE: [How-TO] apache2 SSL ubuntu 14.04 - Diablo925 - 02-09-2015 Can you made a past of you custom entry RE: [How-TO] apache2 SSL ubuntu 14.04 - etienne7702 - 02-10-2015 Code: </VirtualHost>
# Configuration for WebMail
<VirtualHost *:80>
ServerAlias webmail.pcfeverhosting.co.za
DocumentRoot "/etc/sentora/panel/etc/apps/webmail/"
AddType application/x-httpd-php .php
<Directory "/etc/sentora/panel/etc/apps/webmail/">
Options +FollowSymLinks -Indexes
AllowOverride All
Require all granted
</Directory>
</virtualHost>
<virtualhost *:443>
ServerName pcfeverhosting.co.za
ServerAlias www.pcfeverhosting.co.za
ServerAdmin info@pcfeverhosting.co.za
DocumentRoot "/var/sentora/hostdata/pcfeverhosting/public_html/pcfeverhosting.co.za"
php_admin_value open_basedir "/var/sentora/hostdata/pcfeverhosting/public_html/pcfeverhosting.co.za:/var/sentora/temp/"
php_admin_value suhosin.executor.func.blacklist "passthru, show_source, shell_exec, system, pcntl_exec, popen, pclose, proc_open, proc_nice, proc_terminate, proc_get_status, proc_close, leak, apache_child_terminate, posix_kill, posix_mkfifo, posix_setpgid, posix_setsid, posix_setuid, escapeshellcmd, escapeshellarg, exec"
SSLProtocol -All +TLSv1 +TLSv1.1 +TLSv1.2
SSLCipherSuite ECDHE-RSA-AES256-SHA384:AES256-SHA256:RC4:HIGH:!MD5:!aNULL:!EDH:!A$
SSLHonorCipherOrder on
ErrorLog "/var/sentora/logs/domains/pcfeverhosting/pcfeverhosting.co.za-error.log"
CustomLog "/var/sentora/logs/domains/pcfeverhosting/pcfeverhosting.co.za-access.log" combined
CustomLog "/var/sentora/logs/domains/pcfeverhosting/pcfeverhosting.co.za-bandwidth.log" common
<Directory "/var/sentora/hostdata/pcfeverhosting/public_html/pcfeverhosting.co.za">
Options +FollowSymLinks -Indexes
AllowOverride All
Require all granted
</Directory>
AddType application/x-httpd-php .php3 .php
ErrorDocument 500 /_errorpages/500.html
ErrorDocument 403 /_errorpages/403.html
ErrorDocument 404 /_errorpages/404.html
ErrorDocument 510 /_errorpages/510.html
DirectoryIndex index.html index.htm index.php index.asp index.aspx index.jsp index.jspa index.shtml index.shtmRE: [How-TO] apache2 SSL ubuntu 14.04 - Diablo925 - 02-10-2015 Hi @[etienne7702] Sorry my fault I forgot to add the line Code: SSLEngine on
SSLCertificateFile /var/sentora/hostdata/username/ssl/domain.tld.crt
SSLCertificateKeyFile /var/sentora/hostdata/username/ssl/domain.tld.keyI have updated my post RE: [How-TO] apache2 SSL ubuntu 14.04 - Cantalupo - 02-10-2015 Now the tutorial was better. RE: [How-TO] apache2 SSL ubuntu 14.04 - Cantalupo - 02-10-2015 Got it, thanks!
RE: [How-TO] apache2 SSL ubuntu 14.04 - mathijs - 06-07-2015 Thanks for this tutorial. How can I also connect to my panel.mydomain.com with https? When I go to https://panel.mydomain.com it brings me to mydomain.com. with http:// no problems. How to fix this? RE: [How-TO] apache2 SSL ubuntu 14.04 - stiuvert0007 - 06-24-2015 (02-10-2015, 04:13 AM)Diablo925 Wrote: Hi @[etienne7702] Hello! Thank you for the post, now I have a better idea of how everything works but I can´t get my site working. This is my Custom entry in the Virtual Host Override module: </virtualHost> <virtualhost *:443> ServerName tilabmx.com ServerAlias www.tilabmx.com ServerAdmin hcmarcos@tilabmx.com DocumentRoot "/var/sentora/hostdata/zadmin/public_html/tilabmx_com" php_admin_value open_basedir "/var/sentora/hostdata/zadmin/public_html/tilabmx_com:/var/sentora/temp/" php_admin_value suhosin.executor.func.blacklist "passthru, show_source, shell_exec, system, pcntl_exec, popen, pclose, proc_open, proc_nice, proc_terminate, proc_get_status, proc_close, leak, apache_child_terminate, posix_kill, posix_mkfifo, posix_setpgid, posix_setsid$ SSLEngine on SSLCertificateKeyFile /etc/apache2/ssl/tilabmx_com.key SSLCertificateFile /etc/apache2/ssl/tilabmx_com.crt SSLCertificateChainFile /etc/apache2/ssl/tilabmx.com.ca-bundle SSLProtocol -All +TLSv1 +TLSv1.1 +TLSv1.2 SSLCipherSuite ECDHE-RSA-AES256-SHA384:AES256-SHA256:RC4:HIGH:!MD5:!aNULL:!EDH:!A$ SSLHonorCipherOrder on ErrorLog "/var/sentora/logs/domains/zadmin/tilabmx.com-error.log" CustomLog "/var/sentora/logs/domains/zadmin/tilabmx.com-access.log" combined CustomLog "/var/sentora/logs/domains/zadmin/tilabmx.com-bandwidth.log" common <Directory "/var/sentora/hostdata/zadmin/public_html/tilabmx_com"> Options +FollowSymLinks -Indexes AllowOverride All Require all granted </Directory> AddType application/x-httpd-php .php3 .php ErrorDocument 500 /_errorpages/500.html ErrorDocument 403 /_errorpages/403.html ErrorDocument 404 /_errorpages/404.html ErrorDocument 510 /_errorpages/510.html DirectoryIndex index.html index.htm index.php index.asp index.aspx index.jsp index.jspa index.shtml index.shtm The bold letters indicate the files as instructed by Comodo PositiveSSL instructions here: https://support.comodo.com/index.php?/Knowledgebase/Article/View/637/0/certificate-installation-apache--mod_ssl And in the Sentora Docs: http://docs.sentora.org/?node=64 THank you very much in advance I hope you can help me. |