maybe chmod 0710 'ssl/private'
maybe chgrp 'ssl-cert' 'ssl/private/ssl-cert-snakeoil.key'
maybe chmod 0640 'ssl/private/ssl-cert-snakeoil.key'
+maybe chmod 0755 'ssl/server'
+maybe chmod 0644 'ssl/server/server.crt'
+maybe chmod 0644 'ssl/server/server.csr'
+maybe chmod 0600 'ssl/server/server.key'
maybe chmod 0644 'su-to-rootrc'
maybe chmod 0644 'subgid'
maybe chmod 0644 'subgid-'
--- /dev/null
+../mods-available/socache_shmcb.load
\ No newline at end of file
--- /dev/null
+../mods-available/ssl.conf
\ No newline at end of file
--- /dev/null
+../mods-available/ssl.load
\ No newline at end of file
-
-<VirtualHost www:443>
- ServerAdmin wwwadm@tbz-pariv.lan
- ServerName www.tbz-pariv.lan
+<IfModule mod_ssl.c>
+<VirtualHost notwiki:443>
+ ServerAdmin mhoellein@tbz-pariv.de
+ ServerName notwiki
SSLEngine on
SSLProtocol all -SSLv2 -SSLv3
#SSLCipherSuite EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH
SSLCipherSuite ALL:!ADH:!EXPORT56:RC4+RSA:+HIGH:+MEDIUM:+LOW:+SSLv2:+EXP:+eNULL
SSLCACertificatePath /etc/ssl/certs/
- SSLCertificateFile /etc/ssl/server/TBZ-PARIV_www.pem
- SSLCertificateKeyFile /etc/ssl/server/TBZ-PARIV_www.pem
+ SSLCertificateFile /etc/ssl/server/server.crt
+ SSLCertificateKeyFile /etc/ssl/server/server.key
- ## LDAP für Telefonliste in /srv/www/vhosts/www.tbz-pariv.lan/cgi-bin/telefonliste/make/.htaccess
+ ## LDAP für Telefonliste in /var/www/www.tbz-pariv.lan/cgi-bin/telefonliste/make/.htaccess
# DocumentRoot: The directory out of which you will serve your
# documents. By default, all requests are taken from this directory, but
# symbolic links and aliases may be used to point to other locations.
- DocumentRoot /srv/www/vhosts/www.tbz-pariv.lan
+ DocumentRoot /var/www/www.tbz-pariv.lan
# if not specified, the global error log is used
ErrorLog /var/log/apache2/www.tbz-pariv.lan-error_log
# The same rules about trailing "/" apply to ScriptAlias directives as to
# Alias.
#
- ScriptAlias /cgi-bin/ "/srv/www/vhosts/www.tbz-pariv.lan/cgi-bin/"
+ ScriptAlias /cgi-bin/ "/var/www/www.tbz-pariv.lan/cgi-bin/"
# "/srv/www/cgi-bin" should be changed to whatever your ScriptAliased
# CGI directory exists, if you have one, and where ScriptAlias points to.
#
- <Directory "/srv/www/vhosts/www.tbz-pariv.lan/cgi-bin">
+ <Directory "/var/www/www.tbz-pariv.lan/cgi-bin">
AllowOverride None AuthConfig FileInfo
Options +ExecCGI -Includes
# Order allow,deny
#
# This should be changed to whatever you set DocumentRoot to.
#
- <Directory "/srv/www/vhosts/www.tbz-pariv.lan">
+ <Directory "/var/www/www.tbz-pariv.lan">
#
# Possible values for the Options directive are "None", "All",
Require all granted
</Directory>
- <Directory "/srv/www/vhosts/www.tbz-pariv.lan/websvn">
+ <Directory "/var/www/www.tbz-pariv.lan/websvn">
Options FollowSymLinks
Options +MultiViews
</Directory>
- <Directory "/srv/www/vhosts/www.tbz-pariv.lan/viewcvs">
+ <Directory "/var/www/www.tbz-pariv.lan/viewcvs">
AllowOverride None AuthConfig FileInfo
Options +ExecCGI -Includes
# Order allow,deny
</Directory>
# Modcron wird per WSGI angesprochen
- RequestReadTimeout header=10 body=300
- WSGIDaemonProcess modcron_daemon user=modcron group=users threads=1 processes=4 maximum-requests=1000 request-timeout=600 python-home=/localhome/user/modcron
- WSGIScriptAlias /modcron /localhome/user/modcron/src/modcron/modcron/apache/modcron.wsgi
- <Location "/modcron/">
- WSGIProcessGroup modcron_daemon
- WSGIApplicationGroup %{GLOBAL}
+ #RequestReadTimeout header=10 body=300
+ #WSGIDaemonProcess modcron_daemon user=modcron group=users threads=1 processes=4 maximum-requests=1000 request-timeout=600 python-home=/localhome/user/modcron
+ #WSGIScriptAlias /modcron /localhome/user/modcron/src/modcron/modcron/apache/modcron.wsgi
+ #<Location "/modcron/">
+ # WSGIProcessGroup modcron_daemon
+ # WSGIApplicationGroup %{GLOBAL}
# Mit einem touch auf das WSGIScript wird alles neu gestartet
## WSGIReloadMechanism Process
# Allow from all
- Require all granted
- </Location>
- Alias /media/modcron/ /localhome/user/modcron/src/modcron/modcron/docroot/
- <Directory /localhome/user/modcron/src/modcron/modcron/docroot>
- Options FollowSymLinks
+# Require all granted
+ #</Location>
+ #Alias /media/modcron/ /localhome/user/modcron/src/modcron/modcron/docroot/
+ #<Directory /localhome/user/modcron/src/modcron/modcron/docroot>
+# Options FollowSymLinks
# Allow from all
- Require all granted
- </Directory>
+# Require all granted
+# </Directory>
#Alias /alle/ /home/alle/
#<Directory /home/alle>
# Modcron TEST wird per WSGI angesprochen
- WSGIDaemonProcess modcrontest_daemon user=modcrontest group=modcrontest threads=1 processes=1 maximum-requests=1
- WSGIScriptAlias /modcrontest /localhome/user/modcrontest/modcron/apache/modcron.wsgi
- <Location "/modcrontest/">
- WSGIProcessGroup modcrontest_daemon
- WSGIApplicationGroup %{GLOBAL}
+# WSGIDaemonProcess modcrontest_daemon user=modcrontest group=modcrontest threads=1 processes=1 maximum-requests=1
+# WSGIScriptAlias /modcrontest /localhome/user/modcrontest/modcron/apache/modcron.wsgi
+# <Location "/modcrontest/">
+# WSGIProcessGroup modcrontest_daemon
+# WSGIApplicationGroup %{GLOBAL}
# Mit einem touch auf das WSGIScript wird alles neu gestartet
## WSGIReloadMechanism Process
# Allow from all
- Require all granted
+# Require all granted
#mg20161119 Satisfy Any
- </Location>
+# </Location>
- Alias /media/modcrontest/ /localhome/user/modcron/public_html/
+# Alias /media/modcrontest/ /localhome/user/modcron/public_html/
RedirectMatch permanent ^/.fjunge/dokuwiki-2009-02-14/doku.php(.*)$ http://www.tbz-pariv.lan/index.html/doku.php$1
RedirectMatch permanent ^/(modwork_tbz.*)$ https://tbz-work/$1
</VirtualHost>
-<VirtualHost www:80>
- ServerName www.tbz-pariv.lan
- Redirect permanent / https://www.tbz-pariv.lan/
-</VirtualHost>
+#<VirtualHost www:80>
+# ServerName www.tbz-pariv.lan
+# Redirect permanent / https://www.tbz-pariv.lan/
+#</VirtualHost>
+</IfModule>
--- /dev/null
+../sites-available/20_www.conf
\ No newline at end of file
--- /dev/null
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
--- /dev/null
+-----BEGIN CERTIFICATE REQUEST-----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-----END CERTIFICATE REQUEST-----
--- /dev/null
+-----BEGIN RSA PRIVATE KEY-----
+MIIJKQIBAAKCAgEA4OLgsDjt6OiI8pEZeXERgXefskHqxsqIy+gLW7Z9NBYcYSCP
+sb8QlnglMTR2P6Jt1FUJQoLf6eGiG17bFAVwzeTS3yxcjeGAkA7EXfbJH9jlCTNJ
+PA1FjchCGBb5+C9jBjKZ9mJQty+Q/vPflYUliOiWNuCOtqLf4P19qmFlNa3Tmp1P
+2bVmjChU5p3+gy3SX3vDFckpvAKe5HfCqWBrjtytJHpNce81SnwmzoPLCRW0sK4f
+y/tJcoJZIz2QRSWhWEnZyUoNV/2yFV5ZbeRl8218kGxvtUBo2q+C8eIqcenrBP5h
+t3tH2NTw0RTPRVElRT2X2CcYwreDActb3u25Lj2o0O5FFU0Bkos+vfanCuXSkaQj
+iJc8Y+jgBkp4502IFJKspCM9noOvPGKfZAc29aNW2pK20r9+qKmdg7cKmMMT+gKL
+K9Gqb236g74/UaKCnlesFsi0tWGw+drClNiwXShttr/KCzJLEtEZE36zcxb1xexJ
+UHh1a4qh0dxG/OycCVku/ChL4QjSuMm7Q2zrDPeEScsH2NDsjbdWZ7J/AssIYJYs
+iltmnLkeRXu8FHjh0IFLl3EDp6JCvdl83YDFO6M7n2fwvUywkJwkeBeIMdjbpMY2
+ubjW8p+z3ImhBUYZ4S8mhr6zPNlsJq8BhXNs1mc5Yc447xrXFdKuQ/H8d7MCAwEA
+AQKCAgBXgjFooV6CiSnxKeE9zm+/b2snFFtla557qhnxYDusLwZwDRmdUvoDc1EV
+qpJxBKW0QDrQNNkoy3InMGwTiGJy3B3qVfrWAu/iHrzuy39L8zx8rgZLZeaw20JM
+2XP/zYC9AqfCplM+VTYY35EbP6pxcgAx7oPaMdroU/u4dxnJH5D900UlNF9pHrCa
+5NQK+6OnICOzsIma7XIi+S84dZqlBt4hGa5VLX4RM+pt5f711Apxze/1khzsgChr
+fCNNpOz5zBMBLt2uZbwMcKBgEMZTSUF1eZymbR/gKPfNY/KcTSf003/2w/QbPhFP
+aseU85SLMwKJS/1ol7xU0Gs5fkvWJaSRjcLrM2jW4gsLkaglH33aglCOXZJHf13w
+8dmoQ6dpMsjIM0WHvCrwzLNbU/eM+iaA/AoS7+Mb5NH/KwMcavJe+BPe5SgmClh7
+RkwlYotJuetGx+YZem6eh84LdGNJ1HySGVLw0ASNbR7gbKRtrlDYKGczbgOLbKDk
+zqk7y5BHTVoP3d3nqrf5GixNRXxtiEJ5fkwzJ2CQYNzd3BP+ho+5cIZfafaAo2vt
+RRSUpAk/szv/+/04jSnLYVXV5NrqkaLUVIjt6B75gGJjUq2YmklfBjgtXc8Q36vA
+dg/G+XKjrRqR4R5cgKQTTD1LrsxaUUuOY4P+ItBin8gIRZmSQQKCAQEA+mQ23HVt
+99uWjKktLASIULu/qKuT25PWYjstUEF+qswzKlwk+UnVzcN75yol2KS0sojY7AWj
+BzvBnFjn73oToMWmQfrSnkhtLW5BN79TfwS9iqzP9Y1fmChe9/Rb7cjuNWG15+kB
+z6ci1p6L5txDNxzP4w8bsMw6knYs2kseVigYxcFp9AL0koMHAufB7bb2xgs5vtWM
+ycV+f1sXz5dJ4mKgVEDHZ6v4FzbydjKC+CRt02nZGXLuf8SpNoMcNYj2Gy8KbMOU
+Acfo0DmO9j2iRc7AhyGZT4FqJ4Y+dv/gw0dUdqM6QFSNXGHbDCvFt2y/AbJ0doYh
+5oV0YTEQgLXhYwKCAQEA5expil4wjfxNRtyU0efOvM+6Y+rzC5kVOp5W6++NcYde
+91eYFCbKCepqxxsjPt1pdXAJDdYeNpB7UfO4DsY7OwM9lTWhpdSdlPIdEwDt8yPP
+hcZFfOoqzB9fX7fNzZ/gli/5owGZlncSO5rbo8H2aC8lce9CzSwZGKbSXaeFo6SE
+XYctTHWt/y3JU0o0r1nNBrqtJCvbmg7J+rb2kzOWMLiK/bjEVYETo10RcMT1YQof
+MjD5gjdvnAOlf/gtPX6mxzeL+RiJthH6N+6l3KOmKXyLwHIbT+R0EF/jevdsLFCu
+aYxS0isSW12TKrBoI1sMZePEA34F5LBWvFQ5OnKJcQKCAQBkoZAW7C8FFUCdSYS5
+Ex1B7SLrBAIJlpHrqsLcZWYl+Kl7lcraUZ1W9ADA+AR73D4vHqanvOA3kQGP939H
+lLV8wNK/47FwIcWXI5+caw2AmAQhTrDJjEbmHRuF5bRojX+G/r0f9lpe/VoYDWJG
+pzFwXekC5ViIppvHryz5koUftT+3grM1eVaX54cS2Nfs1MK691n+406Q7QmY36Bj
+Mvdjv6WWFu7NMKUll1S8wjI2zlVBSWISQ0mtGfmzyd+1eFUIudAjxDqguJpNzUQy
+nLSx/5UK+irmdCmYtvA13UKU2P8OKy3HGvQxM7bYXmM5A8CESxdZZzEKt4n9Yb2z
+LOXnAoIBAQC99PkpQTI6TEWIEvu9BBgwtCqZHGaaoWoBmQnVOYARWLckALF7jKSF
+Vq/LOed/q6vSQ7KnRMyHZg0Mox/gzPPoiH/bg4i+mg9rHDDbH3x30ZFFQ47ragfb
+xtukGBYnGTySuKY1fz/mKQ/eQM3P2JL8dl8oZ3U4T4OYc1L/30Sw814Ma38IWX1c
+gvZ/IqKucLHMKnSbmsR+3lMPGRRUf11JeV4TyxAiWFbiNCURlxfniVZGwGGTrLtA
+GV8lf+PYl4ewtXqmXRiBXQ7uIPPVezrvsZ9AasWX1vXxBVfKoxoy7qF6QF24l689
+3uyUa1ROSY3PrEKoY/j4fJvcUnVJjZFxAoIBAQC9D64pq9KKPzn+q079kRXG3o7A
+oxqwgRS5nfZ6RVZlepEErX0XPh0GyTLQiZ1nisOP1Y/g+axLxkyb3aLoMW4sPAqI
+QhKdaP0X3EfxM8z5Y/PWCy6iVDKZH3yi/QQvOej7CkCBrkzYqcfx3JzHW9Kl5gNl
+Sn7LjTcP8yVCgenvheJyQLV+wvl0X1/2TCqO9kVTjzwhXVNIXnLriAHfrKMfZlPf
+B69DZtCqTIuU2ECPkdT1o71S29zbD6vvb2+cZEuF2VYlM1dTfrbX8I4G0cRx6TIo
+6vgFGElfGfBhh8vtFEXxT6muESi4iGOMldwle7kGC+iS/cuMp9CUAmHCFTy5
+-----END RSA PRIVATE KEY-----