|
Post by stormforce5 on Aug 8, 2011 5:54:59 GMT -5
Hello All,
does anyone have details how to run RB behind Apache and then setup SSL / https?
I have asked for help for this before but got no where...
I see the runbasichosting service offers SSL (https) secure link between client and host server.... but I've been told that our company does not want data outside the UK so I'm stuck with trying to set it up by myself.
Would be lovely if RB2 could support it... as with teh world nowadays SSL / HTTPS is required when entering / displaying sensitive data.
Any help would be appreicated...
I guess I'd have to install apache / find how to install a SSL certificate and how to make apache re-direct to a RB server... I've only done SSL certs in IIS and I know nothing about apache..
help please??
thanks
Jimbo
|
|
|
Post by stormforce5 on Aug 8, 2011 9:26:59 GMT -5
Update: After playing around with latest ver of apache for windows, I've managed to create a self assigned certificate then I managed to get apache to use SSL and the self assigned certificate. I then had to find had to make apache reverse proxy the external address example.com to my internet rb server and of course go from https: to http for RB server after much more playing around (or research as I tell my boss!) I got that working too. so apart from finding how to assign a real life cert to apache instead of the self assigned (home made one) I'm there.... I think.... I tried it from an external machine (after opening up the firewall for 443 and my apache IP) and it worked so I'm happy... if anyone else wants help I will try to help... cheers Jimbo
|
|
|
Post by stormforce5 on Aug 8, 2011 9:28:13 GMT -5
opps that should of been internal rb server (not internet rb server)
|
|
mmiscool
Full Member
Send me a message if you want to help with a WEB OS project
Posts: 106
|
Post by mmiscool on Aug 8, 2011 12:25:36 GMT -5
I would be interested in getting some thing like this set up. Do you have google talk?
-Mike
|
|
|
Post by StefanPendl on Aug 8, 2011 12:47:52 GMT -5
I guess I'd have to install apache / find how to install a SSL certificate and how to make apache re-direct to a RB server... I've only done SSL certs in IIS and I know nothing about apache.. Since you know IIS, why bother with Apache?
|
|
|
Post by stormforce5 on Aug 8, 2011 13:47:55 GMT -5
Hi Stefan,
I wouldn't say I know IIS very well either, but did spend alot of time trying to get it to work about 12months ago... the main problem was with the reverse proxy side of things.. IIS 6 didn't have a inbuilt way of doing this and I spent ages trying to get 3rd party plugins / stuff (dll's etc,etc) trying to get to work... at least Apache has a built in mod_rewrite + proxy and other stuff to keep it all in one package...
Another nice thing about this is that apache + RB will all run quite happily on a windows xp Virtual Machine ... I have loads of windows xp pro licenses...
The fact I managed to get it working in one day shows it must be easier, plus I've never used apache really before.....
mmiscool (mike) you are welcome to email me and I can go through what I've done and the mod's I've made to the default install of apache 2.2... mainly in 2 config files.... make sure you download full pache (with open SSL)
I have been testing performance from home to the APACHE server doing reverse proxy setup I did earlier and the speed is good... (I only have a 1meg ADSL line) just got to sort out a real life SSL certificate tomorrow if I get chance.
Nowadays https (SSL) is becoming a requirement as its so easy to network sniff un-encrypted http traffic and of course too many people dont clear their auto complete (etc,etc) on their browsers making it easy for virus's and other nasties to grab sensitive logins / data.
cheers
|
|
|
Post by StefanPendl on Aug 9, 2011 23:34:35 GMT -5
mmiscool (mike) you are welcome to email me and I can go through what I've done and the mod's I've made to the default install of apache 2.2... mainly in 2 config files.... make sure you download full pache (with open SSL) How about posting here on the Apache sub-board, so all members can take advantage of your findings If it does not fit a post or too, or you like to have it in an article format, create an article at the RB Wiki and post a link in the sub-board.
|
|
|
Post by stormforce5 on Aug 10, 2011 9:59:49 GMT -5
yep I could be willing to help out... if others are interested..... I'm using a full fledged Godaddy SSL (work paid for it!) on apache server now and its working well. I also used www.wormly.com/test_ssl to test its security levels.... ciphers / SSL ver etc,etc... if a free site so why not! I found a cheap site doing SSL certs for $9 a year or $24 for 3 years well cheap... dont know if they work with Apache or not but I guess they will...
|
|
|
Post by stormforce5 on Aug 10, 2011 10:06:46 GMT -5
something also worth mentioning is that the Apache (reverse proxy) setup speeds up RB server whether you're using http or https as its caching files (I guess) which would improve speed.
For a test I reconfigured RB to port 81 and set Apache to reverse proxy on port 80 (http) and port 443 (https) and work well. Basically Apache sends data from port 80 and 443 to RB server on port 81 without the user knowing.
|
|
|
Post by StefanPendl on Aug 10, 2011 12:18:21 GMT -5
yep I could be willing to help out... if others are interested..... People are always searching for information, if you post it here they do not need to reinvent the wheel Thanks in advance.
|
|