2024-07-12
한어Русский языкEnglishFrançaisIndonesianSanskrit日本語DeutschPortuguêsΕλληνικάespañolItalianoSuomalainenLatina
सामग्रीसूची
3. http service sub-configuration file विन्यस्यताम्
4. http सेवां प्राप्तुं एकं पुटं रचयन्तु तथा च निवेशं सञ्चिकायां पुनः निर्दिशन्तु
5. Windows इत्यस्य अधः Linux स्थानीयगोदामस्य स्थानीयगोदामस्य च विन्यस्तं कुर्वन्तु
उपयोक्तृप्रमाणीकरणम्
- # 创建两个账户
- [root@localhost ~]# htpasswd -c /etc/httpd/zhanghao tom
- New password:
- Re-type new password:
- Adding password for user tom
- [root@localhost ~]# htpasswd /etc/httpd/zhanghao jerry
- New password:
- Re-type new password:
- Adding password for user jerry
- # 查看是否创建成功
- [root@localhost ~]# tail /etc/httpd/zhanghao
- tom:$apr1$2s/wloz6$G0SlGTKB62a4.2gJmy.AL.
- jerry:$apr1$lOxB9Dtq$tOTaJ35Jtt8dWouHbjgWi1
1. mod_ssl डाउनलोड् कुर्वन्तु
[root@localhost ~]# yum install mod_ssl -y
नोटः- सॉफ्टवेयरं डाउनलोड् कर्तुं भवद्भिः गोदामं विन्यस्तं कृत्वा माउण्ट् करणीयम् यदि आवश्यकं भवति तर्हि मया पूर्वं लिखितं लेखं पश्यितुं शक्यते ।
2.tls एन्क्रिप्शन: 1.1.
- # 创建密钥
- [root@localhost certs]# openssl genrsa -aes128 2048 > jiami.key
- # 输入密码
- Enter PEM pass phrase:
- Verifying - Enter PEM pass phrase:
- # 创建证书
- [root@localhost certs]# openssl req -utf8 -new -key jiami.key -x509 -days 100 -out jiami.crt
- Enter pass phrase for jiami.key:
- You are about to be asked to enter information that will be incorporated
- into your certificate request.
- What you are about to enter is what is called a Distinguished Name or a DN.
- There are quite a few fields but you can leave some blank
- For some fields there will be a default value,
- If you enter '.', the field will be left blank.
- -----
- Country Name (2 letter code) [XX]:86 # 国家
- State or Province Name (full name) []:shaanxi # 省份
- Locality Name (eg, city) [Default City]:xi'an # 城市
- Organization Name (eg, company) [Default Company Ltd]:rhce # 组织
- Organizational Unit Name (eg, section) []:peihua # 组织单元
- Common Name (eg, your name or your server's hostname) []:www.hehe.com # 主机名!!!
- Email Address []:[email protected] # 邮箱
3.मोबाइल कुञ्जी स्थानं
- # 移动密钥位置
- [root@localhost certs]# cd /etc/pki/tls/certs
- # 密钥位置为/etc/pki/tls/private/jiami.key
- [root@localhost certs]# mv jiami.key ../private/
4. /etc/httpd/conf.d/ssl.conf सञ्चिकां परिवर्तयन्तु
- SSLCertificateFile /etc/pki/tls/certs/jiami.crt
- SSLCertificateKeyFile /etc/pki/tls/private/jiami.key
भवता स्वस्य कृते निर्मिताः कीलानि प्रमाणपत्राणि च परिवर्तयन्तु
- [root@localhost certs]# vim /etc/httpd/conf.d/vhost.conf
- # 重启服务时需要输入创建tls时的密码
- [root@localhost certs]# systemctl restart httpd
- 🔐 Enter TLS private key passphrase for www.hehe.com:443 (RSA) : ******
दस्तावेज सामग्रीः १.
- <directory /www>
- allowoverride none
- require all granted
- </directory>
- # 用户认证
- <directory /usr/local/secret>
- authtype basic
- authname "Please input your passwd: "
- authuserfile /etc/httpd/zhanghao
- require user tom jerry
- </directory>
- # tls加密,地址为自己的主机地址,端口为443代表https服务
- <virtualhost 192.168.198.151:443>
- SSLEngine on
- SSLCertificateFile /etc/pki/tls/certs/jiami.crt
- SSLCertificateKeyFile /etc/pki/tls/private/jiami.key
- documentroot /www/hehe
- servername www.hehe.com
- alias /hehe /usr/local/secret
- </virtualhost>
http सेवा पुनः आरभत
systemctl restart httpd
- [root@localhost certs]# mkdir /www
- [root@localhost certs]# mkdir /www/hehe
- [root@localhost certs]# mkdir /usr/local/secret
- [root@localhost certs]# echo hehe > /www/hehe/index.html
- [root@localhost certs]# echo secret > /usr/local/secret/index.html
1.Linux स्थानीय गोदाम (/आदि/मेजबान)
- [root@localhost certs]# vim /etc/hosts
- 192.168.198.151 www.hehe.com
2. विण्डोज मध्ये स्थानीयभण्डारं विन्यस्यताम्
यदि भवन्तः ब्राउजरे परीक्षणं कर्तुं प्रवृत्ताः सन्ति तर्हि Windows स्थानीयभण्डारं (C:WindowsSystem32driversetchosts) विन्यस्तुं आवश्यकम् ।
२.१ win+r धावन्तं विण्डो उद्घाटयितुं
२.२ctrl+shift+enter, प्रशासकरूपेण चालयन्तु
2.3 "notepad" इति प्रविष्टं कुर्वन्तु ततः Notepad pop up भविष्यति ।
२.४ सञ्चिकां उद्घाटयन्तु
2.5 /windows/system32/drivers/etc/hosts इति चिन्वन्तु
2.6 hosts सञ्चिकायां कोडं योजयन्तु
192.168.198.151 www.hehe.com
- [root@localhost certs]# systemctl stop firewalld
- [root@localhost certs]# setenforce 0
- # 修改过子配置文件,都需要重启http服务,生效
- [root@localhost certs]# systemctl restart httpd