Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision Next revision Both sides next revision | ||
tutorial:adm:server_preparation_win [2019/06/03 12:40] cernym [HTTPd installation and configuration] |
tutorial:adm:server_preparation_win [2020/03/04 15:33] kolarikj [HTTPd installation and configuration] |
||
---|---|---|---|
Line 141: | Line 141: | ||
Configure the HTTPd in its core config file '' | Configure the HTTPd in its core config file '' | ||
<file apache httpd.conf> | <file apache httpd.conf> | ||
- | ServerRoot | + | Define SRVROOT |
+ | ServerRoot " | ||
Listen 80 | Listen 80 | ||
Line 303: | Line 304: | ||
Configure the HTTPS virtual host in the '' | Configure the HTTPS virtual host in the '' | ||
+ | < | ||
<file apache httpd-ssl.conf> | <file apache httpd-ssl.conf> | ||
Listen 443 | Listen 443 | ||
- | SSLCipherSuite HIGH: | + | SSLCipherSuite |
SSLProxyCipherSuite HIGH: | SSLProxyCipherSuite HIGH: | ||
SSLHonorCipherOrder on | SSLHonorCipherOrder on | ||
- | SSLProtocol all -SSLv2 -SSLv3 | + | SSLProtocol all -SSLv2 -SSLv3 |
SSLProxyProtocol all -SSLv2 -SSLv3 | SSLProxyProtocol all -SSLv2 -SSLv3 | ||
SSLPassPhraseDialog | SSLPassPhraseDialog | ||
SSLSessionCache | SSLSessionCache | ||
SSLSessionCacheTimeout | SSLSessionCacheTimeout | ||
+ | |||
< | < | ||
Line 377: | Line 380: | ||
SecRuleRemoveById 200003 | SecRuleRemoveById 200003 | ||
</ | </ | ||
+ | | ||
+ | # Modsec can throw false positives on some files due to multipart boundary check | ||
+ | < | ||
+ | SecRuleRemoveById 960915 | ||
+ | SecRuleRemoveById 200003 | ||
+ | </ | ||
# do not log request/ | # do not log request/ | ||
Line 420: | Line 429: | ||
Supply SSL certificate and key in x509 PEM form to '' | Supply SSL certificate and key in x509 PEM form to '' | ||
===== mod_security installation ===== | ===== mod_security installation ===== | ||
- | Download the mod\_security module from the [[https:// | + | Download the mod\_security module from the [[https:// |
Unpack the zip and perform following actions: | Unpack the zip and perform following actions: | ||
* Copy the '' | * Copy the '' | ||
- | * Copy '' | + | * Copy '' |
Create general mod\_security configuration file '' | Create general mod\_security configuration file '' |