2439 ¹ø ±ÛÀÇ ´äÀå±Û: Re: Re: ssl ¿î¿µ½Ã µÎ°³ÀÌ»ó µµ¸ÞÀÎ ¿î¿µ¹æ¹ý |
±Û¾´ÀÌ: ÀÌÇöö
|
±Û¾´³¯: 2006³â 01¿ù 08ÀÏ 15:55:30 ÀÏ(¿ÀÈÄ) |
Á¶È¸: 3098 |
Á¦ÀÇ °³³ä ºÎÁ·ÀÎÁö ¸ð¸£Áö¸¸.
»ó¿ëÈ¿ë ca¿Í ¼¹ö¿¡¼ ¸¸µçca(Å×½ºÆ®¿ëca)¸¦
»ç¿ëÇÒ°æ¿ì
´Ù¸¥Á¡Àº ´ÜÁö À¥ºê¶ó¿ìÀú Á¢¼Ó½Ã ¼¹ö¿¡¼ ¸¸µç ca¸¦ »ç¿ëÇؼ ¼¸íÇÑ »çÀÌÆ® °æ¿ì¿¡´Â
°æ°íâÀÌ ¶á´Ù´Â°ÍÀ¸·Î ¾Ë°íÀÖ½À´Ï´Ù.
(½Å·Ú¼ºÀÌ ¾ø´Â »çÀÌÆ®¶ó´Â ÇüÅÂÀÇ ¸Þ¼¼Áö)
»ó¿ëÈca¶ó´Â°ÍÀ» »ç¿ëÇÏ´Â ÀÌÀ¯´Â ½Å·Ú¼ºÀ» ¹Ï°í »çÀÌÆ®¸¦ ÀÌ¿ëÇصµ µÈ´Ù´Â ÆÇ´ÜÀ̶ó°í
»ý°¢ÇÕ´Ï´Ù.
±× ÀÌ¿Ü ±â´ÉÀº °°´Ù°í »ý°¢ÇÕ´Ï´Ù.(¾ÏÈ£È Ã³¸®)
---------------- ------------------ --------------------
ÇöÀç 1´ë¼¹ö¿¡ 2°³ÀÇ µµ¸ÞÀÎÀÌ Á¸ÀçÇÏ°í µÎ°³ÀÇ µµ¸ÞÀÎ ÀüºÎ(http)À¥¼ºñ½º ±×¸®°í
ÇϳªÀÇ µµ¸ÞÀο¡ °üÇؼ¸¸(https) ÀÌ¿ëÇÏ°íÀÖ½À´Ï´Ù.(»ó¿ëÈÅ°¸¦
ÀÌ¿ëÇÏÁö ¾ÊÀ½-Å×½ºÆ®¿ëca¸¦ °¡Áö°í httpsÇüÅ·ΠÀÌ¿ëÁß)
httpd.conf¿¡´Â
---------------------------------------------------
<VirtualHost xxx.xxx.xxx.xxx:80>
ServerAdmin xxxxxxxxx
DocumentRoot /home/xxxxxxx
ServerName zec.gigaprize.co.jp
ErrorLog logs/error.log
CustomLog logs/access.log common
</VirtualHost>
<VirtualHost xxx.xxx.xxx.xxx:80>
ServerAdmin xxxxxxxxx
DocumentRoot /home/xxxxxxx
ServerName gourmet-star.gigaprize.co.jp
ErrorLog logs/error_1.log
CustomLog logs/access_1.log common
</VirtualHost>
---------------------------------------------
http://zec.gigaprize.co.jp/index.html (ÇöÀç index.html¿Í
Á¸ÀçÇÏÁö ¾ÊÄ¡¸¸ µµ¸ÞÀαîÁö Á¢¼ÓÀº °¡´ÉÇÔ)
http://gourmet-star.gigaprize.co.jp/index.html (ÇöÀç test¿ë
index.html)ÀÌ Á¸ÀçÇÔ
----------------------------------
ssl.conf¿¡´Â
--------------------------
<VirtualHost _default_:443>
# General setup for the virtual host
DocumentRoot /home/xxxxxxx
ServerName gourmet-star.gigaprize.co.jp:443
ErrorLog logs/ssl-error_log
TransferLog logs/ssl-access_log
-----------------------------------------------
gourmet-star.gigaprize.co.jp ¸¸ https(ssl)ÇüÅ·Π¼³Á¤ÀÌ µÇ¾î ÀÖÀ½.
----
½ÇÁ¦ Á¢¼ÓÀ» Çغ¸½Ã¸é ¾Ë½Ã°ÚÁö¸¸
https://gourmet-star.gigaprize.co.jp/index.html
Á¦´ë·Î Á¢¼ÓÀÌ µÇ°í ÀÖ½À´Ï´Ù.
±×·±µ¥
https://zec.gigaprize.co.jp/index.html
·Î Á¢¼ÓÇغ¸¸é ÀÌ µµ¸ÞÀεµ https·Î Á¢¼ÓµÇ¾î ¹ö¸³´Ï´Ù.(index.htmlÀº
½ÇÁ¦Á¸ÀçÇÏÁö ¾Ê´Âµ¥,³»¿ëÀ» º¸¸é gourmet-gigaprize.co.jp ÇüÅ·Î
Á¢¼ÓÇعö¸³´Ï´Ù.(À¥ºê¶ó¿ìÀú
URLÀº zec.gigaprize.co.jp Àε¥ index.htmlÀº
gourmet-star.gigaprize.co.jp ³»¿ëÀÌ º¸ÀÌ°í ÀÖ½À´Ï´Ù)
-------Áú¹® 1ÀÔ´Ï´Ù..-----------------
À§ÀÇ °á°ú¸¦ º¸¸é 1´ëÀÇ ¼¹ö¿¡ 443ÀÇ Æ÷Æ®·Î ¿äûÀÌ(https°¡ ¼³Ä¡µÇ¾îÀÖÁö¾ÊÀº µµ¸ÞÀεµ
) ssl.conf¿¡ ¼³Á¤µÈ µµ¸ÞÀÎÀ¸·Î °á°ú¸¦ º¸¿©ÁÖ°í Àִµ¥ ÀÌ°ÍÀÌ Á¤»óÀÎÁö¿ä?
>>> °³ÀÎÀûÀ¸·Î https ¼³Á¤µÇÁö ¾ÊÀº µµ¸ÞÀÎ °æ¿ì¿¡´Â 80Àº º¸¿©ÁÖÁö¸¸
443°üÇؼ´Â ¿¡·¯°¡ ³ª´Â °ÍÀÌ Á¤»óÀ̶ó°í »ý°¢Çϴµ¥ .....
¾Æ´Ï¸é Á¦ ¼³Á¤ÀÌ À߸øµÇ¾ú½À´Ï±î?
------------------------------------
--------Áú¹®2ÀÔ´Ï´Ù-------------------
±×¸®°í À§ÀÇ µÎ°³ µµ¸ÞÀÎÀ» ÀüºÎ httpsÇüÅ·Π½ÃÇèÇغÃÁö¸¸.
(ssl.conf¿¡ ¹öÃò¾ó·Î µÎ°³ÀÇ µµ¸ÞÀÏ µî·Ï-¹°·Ð ca¿Í °¢°¢ µµ¸ÞÀκ°·Î ¸¸µé¾úÀ½-Å×½ºÆ®¿ë
ca¸¦ »ç¿ë)
µÎ°³ÀÇ µµ¸ÞÀÎÀ» µî·Ï ÈÄ ¾ÆÆÄÄ¡¼³Á¤ syntaxÅ×½ºÆ®
#sh apache2/bin/apachectl configtest
Syntax OK
±×¸®°í restart ÇÑÈÄ error.log¸¦ º¸¸é ±âÁ¸ÀÇ 443Æ÷Æ®°¡ ÀÌ¿ëÇÏ°í Àֱ⶧¹®¿¡
apachessl¸¦ ±âµ¿ÇÒ¼ö¾ø´Ù°í ³ª¿É´Ï´Ù.
°á±¹ ÇÑ´ëÀÇ ¼¹ö¿¡ 443Æ÷Æ®´Â ÇϳªÀÇ µµ¸ÞÀθ¸ ¿òÁ÷Àϼö ÀÖ´Ù´Â °á·ÐÀä.(80Æ÷Æ®´Â
¸î°³ÀÇ µµ¸ÞÀÎÀ» ¶ç¿ï¼öÀִµ¥ ¸»ÀÌÁÒ)
°á±¹ ÇÑ´ëÀÇ ¼¹ö¿¡ ÇϳªÀÇ µµ¸ÞÀθ¸ httpsÇüÅ·ΠÀÛµ¿ÇÏ´ÂÁö¿ä.
--------------------------------------------------------------
(»ó¿ëÈ ca»çÀÌÆ®¿¡ º¸¸é 700´Þ·¯ Á¤µµÁÖ¸é ¼ºêµµ¸ÞÀÎ(aaa.domail.com
,
bbb.domail.com) ±îÁö ÀüºÎ ´ëÀÀÇÏ´Â caµµ ÆÈ°í Àִµ¥¿ä..
---------------------------------------------------------------
ÀÌ°ÍÀú°Í Å×½ºÆ® Çغ¸´Ù º¸´Ï °³³äÀÌ ´õ ²¿¿©¹ö·È½À´Ï´Ù.
»êÀÌ´ÔÀÇ ½Ã¿øÇÑ ´äº¯À» ºÎŹµå¸³´Ï´Ù.(³»¿ëÀÌ
³Ê¹« ±ä°Í °°½À´Ï´Ù)
[»êÀÌ]´ÔÀÌ ³²±â½Å ±Û:
>
>[ÀÌÇöö]´ÔÀÌ ³²±â½Å ±Û:
>
>>-----------------------------------------
>>´äº¯ÀÚ°¡ ±âº»ÀûÀ¸·Î Âü°íÇÒ ³»¿ëÀÔ´Ï´Ù.
>>- ¹èÆ÷ÆÇ(¿É¼Ç) :
>>- Ä¿³Î¹öÀü(¿É¼Ç) :
>>- µ¥¸ó¹öÀü(¿¹:apache 1.3.27) :
>>- µ¥¸ó¼³Ä¡À¯Çü(RPM/ÄÄÆÄÀÏ/±âŸ)
:
>>-----------------------------------------
>>¿ÃÇصµ ÀÌÁ¦ ¸îÄ¥ ³²Áö ¾Ê¾Ò½À´Ï´Ù.
>>2005³â Àß ¸¶¹«¸® Çϼ¼¿ä..»êÀÌ´Ô..
>>
>>´Ù¸§ÀÌ ¾Æ´Ï¶ó
>>ÇöÀç ¼¹ö¿¡¼ ssl ¸¦ »ó¿ëÈ CA(GeoTrustÞä) ¸¦ »ç¿ëÇÏ°í ÀÖ½À´Ï´Ù.
>>±×·±µ¥ Á¦°¡ ¾Ë±â·Î´Â ip Çϳª´ç ssl¸¦ Çϳª¾¿¹Û¿¡ ¿î¿µ ¸øÇÑ´Ù°í ¾Ë°í
ÀÖ½À´Ï´Ù.
>>
>>±×·±µ¥ ÇöÀç ¼¹ö¿¡¼ µÎ°³ ÀÌ»óÀǵµ¸ÞÀο¡ °¢°¢ sslÇüÅ·Π¿î¿µÀ» ÇÏ°í ½Í½À´Ï´Ù.
±×·¡¼ ¼¹ö¿¡ º¹¼öÀÇ ip¸¦ ÇÒ´çÇؼ »ç¿ëÇÒ·Á°í »ý°¢ÇÏ°í ÀÖ½À´Ï´Ù..
>>
>>±×·¸´Ù¸é ·»Å»¼ºñ½º¸¦ ÇØÁÖ´Â ÇÁ·Î¹ÙÀÌµå °æ¿ì¿¡ ssl¿î¿µÀ» ¼ö¹é°³¾¿ ÇؾßÇϴµ¥ ¸¸ÀÏ
ÇÑ ¼¹ö¿¡ ¼ö½Ê°³ÀÇ ssl¼ºñ½º¸¦ ¿î¿µÇÒ°æ¿ì ÇÑ ¼¹ö¿¡ ¼ö½Ê°³ÀÇ ip¸¦ aliasÇüÅ·Î
ÇÒ´çÇؼ ¿î¿µÇÏ°í ÀÖ´ÂÁö¿ä?
>>¾î¶² ¹æ¹ýÀ¸·Î ¿î¿µÇÏ°í ÀÖ´ÂÁö ±Ã±ÝÇÕ´Ï´Ù..
>>
>>
>>»ó¿ëÈCA»çÀÌÆ®¿¡¼
º¸¸é ¹öÃô¾óµµ¸ÞÀο¡ °üÇؼ´Â ¡¼¡¡*.domain.com¡¡¡½
>>ÀüºÎµµ °¡´ÉÇÑ CAµîÀº Àִ°ÍÀ¸·Î ¾ËÁö¸¸...¸»ÀÌÁÒ...
>
>========================================
>
>CA¸¦ ÅëÇÑ ÀÎÁõ¼°°Àº °æ¿ì ½ÎÀÌÆ® Çϳª´ç ÇÑ°³ÀÇ ÀÎÁõ¼°¡ ÁÖ¾îÁý´Ï´Ù.
>µû¶ó¼ IP ±âÁØÀÌ ¾Æ´Ï°í ½ÎÀÌÆ® ±âÁØÀÔ´Ï´Ù.
>
>½ÎÀÌÆ®¶ó°í Çϸé hostname À» ÀǹÌÇϹǷÎ, ¾ÆÆÄÄ¡ÀÇ VirtualHost ¼½¼Ç¿¡
>¼³Á¤ÇÑ ServerName (ServerAlias ¾Æ´Ô)¿¡ ÇØ´çµË´Ï´Ù.
>
>ÀÚ¼¼ÇÑ ³»¿ëÀº ÇØ´ç CA¿¡ ¹®ÀÇÇÏ´Â °ÍÀÌ Á¦ÀÏ È®½ÇÇÕ´Ï´Ù.
========================================
|
ÀÌÀü±Û : Re: ssl ¿î¿µ½Ã µÎ°³ÀÌ»ó µµ¸ÞÀÎ ¿î¿µ¹æ¹ý
´ÙÀ½±Û : Re: Re: Re: ssl ¿î¿µ½Ã µÎ°³ÀÌ»ó µµ¸ÞÀÎ ¿î¿µ¹æ¹ý
|
from 219.37.116.22
JS(Redhands)Board 0.4 +@
|