{"id":797,"date":"2016-08-18T22:06:28","date_gmt":"2016-08-18T22:06:28","guid":{"rendered":"http:\/\/adriangrigoras.com\/blog\/?p=797"},"modified":"2017-03-18T22:07:12","modified_gmt":"2017-03-18T22:07:12","slug":"securing-apache-ssl","status":"publish","type":"post","link":"https:\/\/adriangrigoras.com\/blog\/securing-apache-ssl\/","title":{"rendered":"Securing Apache with SSL"},"content":{"rendered":"<h3><\/h3>\n<p>Let\u2019s install mod24_ssl<\/p>\n<pre>sudo yum install mod24_ssl<\/pre>\n<p>And generate private key + CSR<\/p>\n<pre>openssl req -nodes -newkey rsa:2048 -keyout \/etc\/pki\/tls\/private\/localhost.key -out server.csr<\/pre>\n<p>don\u2019t forget to copy this file in save location ! <code>\/etc\/pki\/tls\/private\/localhost.key<\/code><\/p>\n<p>if we got our purchased SSL certyficate, we have to create file with it. Usually you have to marge all of them to one file:<\/p>\n<pre>cat spidersoft_com_au.crt spidersoft_com_au.ca-bundle &gt; spidersoft_com_au.crt.bundle\r\n<\/pre>\n<p>now we have to make couple small amends in <code>\/etc\/httpd\/conf.d\/ssl.conf<\/code> file.<\/p>\n<p>&nbsp;<\/p>\n<pre>DocumentRoot \"\/var\/www\/html\"\r\nServerName www.spidersoft.com.au:443\r\nSSLCertificateFile \/etc\/pki\/tls\/certs\/spidersoft_com_au.crt.bundle\r\nSSLCertificateKeyFile \/etc\/pki\/tls\/private\/localhost.key\r\n<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>Don\u2019t forget to check if your certificate was installed properly. I\u2019m using this website <a href=\"http:\/\/www.sslshopper.com\/ssl-checker.html\" target=\"_blank\">www.sslshopper.com\/ssl-checker.html<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Let\u2019s install mod24_ssl sudo yum install mod24_ssl And generate private key + CSR openssl req -nodes -newkey rsa:2048 -keyout \/etc\/pki\/tls\/private\/localhost.key -out server.csr don\u2019t forget to copy this file in save location ! \/etc\/pki\/tls\/private\/localhost.key if we got our purchased SSL certyficate, we have to create file with it. Usually you have to marge all of them\u2026 <span class=\"read-more\"><a href=\"https:\/\/adriangrigoras.com\/blog\/securing-apache-ssl\/\">Read More &raquo;<\/a><\/span><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[],"class_list":["post-797","post","type-post","status-publish","format-standard","hentry","category-apache"],"_links":{"self":[{"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/posts\/797","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/comments?post=797"}],"version-history":[{"count":1,"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/posts\/797\/revisions"}],"predecessor-version":[{"id":798,"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/posts\/797\/revisions\/798"}],"wp:attachment":[{"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/media?parent=797"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/categories?post=797"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/adriangrigoras.com\/blog\/wp-json\/wp\/v2\/tags?post=797"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}