HTTP Default Port 80 VS HTTPS Default Port 443.
Apache2.2
SSLEngine on
SSLCertificateFile /.../secure.crt
SSLCertificateKeyFile /.../secure.key
#CA certificate
#Intermediate SSL Certificate,Chained SSL Certificate
#e.g:
SSLCACertificateFile /.../ca-certificates.crt
#proxy_ajp
ProxyPass / ajp://localhost:8009/
ProxyPassReverse / ajp://localhost:8009/
ServerName localhost #disable waring ...127.0.1.1
/usr/sbin/apache2ctl -v
Tomcat6:
如果使用子域名通配符SSL证书(wildcard SSL certificate),就能在一个IP地址上部署多个HTTPS子域名.
UCC(统一通信证书,Unified Communications Certificate)支持一张证书同时匹配多个站点,可以是完全不同的域名。
SNI(服务器名称指示,Server Name Indication)允许一个IP地址上多个域名安装多张证书。
Disable Weak Ciphers
阅读(996) | 评论(0) | 转发(0) |