「Fedora 36」Apache2.4.53でSSL/TLS の設定を有効化する方法

環境
OSバージョンを確認します

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
# cat /etc/redhat-release
Fedora release 36 (Thirty Six)
# cat /etc/redhat-release Fedora release 36 (Thirty Six)
# cat /etc/redhat-release
Fedora release 36 (Thirty Six)

httpdバージョンを確認します

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
# httpd -V
Server version: Apache/2.4.53 (Fedora Linux)
# httpd -V Server version: Apache/2.4.53 (Fedora Linux)
# httpd -V
Server version: Apache/2.4.53 (Fedora Linux)

SSL/TLSを設定する手順
1.mod_sslをインストールします

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
# dnf -y install mod_ssl
# dnf -y install mod_ssl
# dnf -y install mod_ssl

2.SSLの配置ファイルを設定します
# vi /etc/httpd/conf.d/ssl.conf
59行目
修正前
#DocumentRoot “/var/www/html"
修正後
DocumentRoot “/var/www/html"

60行目 サーバー名指定
修正前
#ServerName www.example.com:443
修正後
ServerName www.arkgame.com:443

101行目 証明書を指定
修正前
SSLCertificateFile /etc/pki/tls/certs/localhost.crt
修正後
SSLCertificateFile /etc/letsencrypt/live/www.arkgame.com/cert.pem

109行目 鍵ファイルを指定

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
修正前
SSLCertificateKeyFile /etc/pki/tls/private/localhost.key
修正後
SSLCertificateKeyFile /etc/letsencrypt/live/www.arkgame.com/privkey.pem
修正前 SSLCertificateKeyFile /etc/pki/tls/private/localhost.key 修正後 SSLCertificateKeyFile /etc/letsencrypt/live/www.arkgame.com/privkey.pem
修正前
SSLCertificateKeyFile /etc/pki/tls/private/localhost.key
修正後
SSLCertificateKeyFile /etc/letsencrypt/live/www.arkgame.com/privkey.pem

118行目 中間証明書を指定

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
修正前
#SSLCertificateChainFile /etc/pki/tls/certs/server-chain.crt
修正後
SSLCertificateChainFile /etc/letsencrypt/live/www.arkgame.com/chain.pem
修正前 #SSLCertificateChainFile /etc/pki/tls/certs/server-chain.crt 修正後 SSLCertificateChainFile /etc/letsencrypt/live/www.arkgame.com/chain.pem
修正前
#SSLCertificateChainFile /etc/pki/tls/certs/server-chain.crt
修正後
SSLCertificateChainFile /etc/letsencrypt/live/www.arkgame.com/chain.pem

3.httpdを再起動します

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
# systemctl restart httpd
# systemctl restart httpd
# systemctl restart httpd

 

Fedora 36

Posted by arkgame