Logo Khaganat

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
Last revisionBoth sides next revision
en:https_ssl [2016/12/28 19:51] – [Improve and test site security via https] Domperssen:https_ssl [2016/12/28 19:55] – [Subdomains and different domains on the same machine] Domperss
Line 70: Line 70:
 For "Let's encrypt" to generate a certificate for all the domains hosted on the server, it is better to make a file by //vhost// in Apache. OBS: Make only unsecured versions(port 80), because "let's encrypt" automatically generates the secure versions(port 443, the "https"). For "Let's encrypt" to generate a certificate for all the domains hosted on the server, it is better to make a file by //vhost// in Apache. OBS: Make only unsecured versions(port 80), because "let's encrypt" automatically generates the secure versions(port 443, the "https").
  
-Let's encrypt seems to locate the subdomains correctly in the same file(name1.mydomain.com, name2.mydomain.com, etc.) ((Avoid it nevertheless, one file per subdomain a better choice.)), but not the different domain names(mondomaine.com and mondomaine2.com for example), which must __imperatively__ be different configuration files. +Let's encrypt seems to locate the subdomains correctly in the same file(name1.mydomain.com, name2.mydomain.com, etc.) ((Avoid it nevertheless, one file per subdomain is a better choice.)), but not the different domain names(mondomaine.com and mondomaine2.com for example), which must __imperatively__ be different configuration files. 
  
 ==== Know the expiration date of the let's encrypt certificate ==== ==== Know the expiration date of the let's encrypt certificate ====
Line 152: Line 152:
  
 <WRAP center round tip 60%> <WRAP center round tip 60%>
-Former configuration, generates an A- to 11/02/2016. The news at the top comes from [[https://www.digicert.com/ssl-support/ssl-enabling-perfect-forward-secrecy.htm]].+Former configuration, generates an A- date: 11/02/2016. The news at the top comes from [[https://www.digicert.com/ssl-support/ssl-enabling-perfect-forward-secrecy.htm]].
   SSLCipherSuite 'EDH+CAMELLIA:EDH+aRSA:EECDH+aRSA+AESGCM:EECDH+aRSA+SHA384:EECDH+aRSA+SHA256:EECDH:+CAMELLIA256:+AES256:+CAMELLIA128:+AES128:+SSLv3:!aNULL:!eNULL:!LOW:!3DES:!MD5:!EXP:!PSK:!DSS:!RC4:!SEED:!ECDSA:CAMELLIA256-SHA:AES256-SHA:CAMELLIA128-SHA:AES128-SHA'   SSLCipherSuite 'EDH+CAMELLIA:EDH+aRSA:EECDH+aRSA+AESGCM:EECDH+aRSA+SHA384:EECDH+aRSA+SHA256:EECDH:+CAMELLIA256:+AES256:+CAMELLIA128:+AES128:+SSLv3:!aNULL:!eNULL:!LOW:!3DES:!MD5:!EXP:!PSK:!DSS:!RC4:!SEED:!ECDSA:CAMELLIA256-SHA:AES256-SHA:CAMELLIA128-SHA:AES128-SHA'
 </WRAP> </WRAP>
CC Attribution-Share Alike 4.0 International Driven by DokuWiki
en/https_ssl.txt · Last modified: 2021/12/03 19:19 by 127.0.0.1

Licences Mentions légales Accueil du site Contact