lunes, 1 de diciembre de 2014

Habilitar SSL desde Webmin

Activar módulo SSL desde Webmin:

https://localhost:10000/

Servidores / Servidor web Apache / Configuración Global / Configure Apache Modules
    marcar
Crear host virtual


sudo mkdir -p /var/www/ssl/htdocs
sudo gedit /var/www/ssl/htdocs/index.html
"Bienvenido al servidor seguro de AI1PC108"

Webmin / Servidor Web Apache  / Create Virtual Host
443 
Raíz de Documento /var/www/ssl/htdocs
ObtenciónImágenes integradas 1
Obtención del certificado:
wget http://librarian.launchpad.net/7477840/apache2-ssl.tar.gz


Conectando con librarian.launchpad.net (librarian.launchpad.net)[91.189.89.224]:80... conectado.
Petición HTTP enviada, esperando respuesta... 301 Moved Permanently
Ubicación: https://launchpadlibrarian.net/7477840/apache2-ssl.tar.gz [siguiente]
--2014-11-30 23:00:30--  https://launchpadlibrarian.net/7477840/apache2-ssl.tar.gz
Resolviendo launchpadlibrarian.net (launchpadlibrarian.net)... 91.189.89.228
Conectando con launchpadlibrarian.net (launchpadlibrarian.net)[91.189.89.228]:443... conectado.
Petición HTTP enviada, esperando respuesta... 200 OK
Longitud: 964 [application/x-tar]
Grabando a: “apache2-ssl.tar.gz”

100%[======================================>] 964         --.-K/s   en 0s     

2014-11-30 23:00:36 (32,9 MB/s) - “apache2-ssl.tar.gz” guardado [964/964]

Descomprimir el fichero descargado.

sudo cp ssleay.cnf  /usr/share/apache2/

sudo cp apache2-ssl-certificate /usr/sbin



sudo mkdir /etc/apache2/ssl


sudo apache2-ssl-certificate

creating selfsigned certificate
replace it with one signed by a certification authority (CA)

enter your ServerName at the Common Name prompt

If you want your certificate to expire after x days call this programm
with -days x
Generating a 1024 bit RSA private key
................++++++
.....++++++
writing new private key to '/etc/apache2/ssl/apache.pem'
-----
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----
Country Name (2 letter code) [GB]:ES
State or Province Name (full name) [Some-State]:Cantabria
Locality Name (eg, city) []:Revilla
Organization Name (eg, company; recommended) []:IES valle de Camargo
Organizational Unit Name (eg, section) []:DPTO de informática
server name (eg. ssl.domain.tld; required!!!) []:AI1pc108
Email Address []:Arevalester@gmail.com

Instalar el certificado:

/etc/apache2/ssl$ sudo mkdir miCA

/etc/apache2/ssl$ sudo mkdir miCA/private


/etc/apache2/ssl$ sudo cp apache.pem miCA/private/cakey.pem

/etc/apache2/ssl$ sudo cp apache.pem miCA/cacert.pem


sudo gedit miCA/serial
01

Certificados para Webmin

Imágenes integradas 4

Imágenes integradas 5
Comprobación del funcionamiento:

https://localhost
Imágenes integradas 6

No hay comentarios:

Publicar un comentario