Closed Olezha closed 7 years ago
Let’s Encrypt
apache2: LoadModule ssl_module /usr/lib/apache2/modules/mod_ssl.so LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so Listen 443 <VirtualHost *:80> ServerName domain.ua ServerAlias www.domain.ua <Location /> RewriteEngine on RewriteCond %{HTTPS} off RewriteRule (.*) https://%{HTTP_HOST}%{REQUEST_URI} [R=301,L] </Location> </VirtualHost> <VirtualHost _default_:443> # as usual # and additionally: SSLEngine on SSLProtocol all -SSLv2 SSLCipherSuite HIGH:MEDIUM:!aNULL:!MD5 #SSLCertificateFile /etc/letsencrypt/live/domain.ua/cert.pem SSLCertificateKeyFile /etc/letsencrypt/live/domain.ua/privkey.pem #SSLCertificateChainFile /etc/letsencrypt/live/domain.ua/chain.pem SSLCertificateFile /etc/letsencrypt/live/domain.ua/fullchain.pem </VirtualHost>
LoadModule ssl_module /usr/lib/apache2/modules/mod_ssl.so
LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so
Listen 443
<VirtualHost *:80>
ServerName domain.ua
ServerAlias www.domain.ua
<Location />
RewriteEngine on
RewriteCond %{HTTPS} off
RewriteRule (.*) https://%{HTTP_HOST}%{REQUEST_URI} [R=301,L]
</Location>
</VirtualHost>
<VirtualHost _default_:443>
# as usual
# and additionally:
SSLEngine on
SSLProtocol all -SSLv2
SSLCipherSuite HIGH:MEDIUM:!aNULL:!MD5
#SSLCertificateFile /etc/letsencrypt/live/domain.ua/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/domain.ua/privkey.pem
#SSLCertificateChainFile /etc/letsencrypt/live/domain.ua/chain.pem
SSLCertificateFile /etc/letsencrypt/live/domain.ua/fullchain.pem
Let’s Encrypt
apache2:
LoadModule ssl_module /usr/lib/apache2/modules/mod_ssl.so
LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so
Listen 443
<VirtualHost *:80>
ServerName domain.ua
ServerAlias www.domain.ua
<Location />
RewriteEngine on
RewriteCond %{HTTPS} off
RewriteRule (.*) https://%{HTTP_HOST}%{REQUEST_URI} [R=301,L]
</Location>
</VirtualHost>
<VirtualHost _default_:443>
# as usual
# and additionally:
SSLEngine on
SSLProtocol all -SSLv2
SSLCipherSuite HIGH:MEDIUM:!aNULL:!MD5
#SSLCertificateFile /etc/letsencrypt/live/domain.ua/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/domain.ua/privkey.pem
#SSLCertificateChainFile /etc/letsencrypt/live/domain.ua/chain.pem
SSLCertificateFile /etc/letsencrypt/live/domain.ua/fullchain.pem
</VirtualHost>