1. Men-generate key
2. Men-generate file CSR
3. Mengirim file CSR ke Root CA
4. Menerima file CRT
5. Edit file ssl.conf
[root@webmail conf.d]# more ssl.conf
LoadModule ssl_module modules/mod_ssl.so
Listen 443
AddType application/x-x509-ca-cert .crt
AddType application/x-pkcs7-crl .crl
SSLPassPhraseDialog builtin
SSLSessionCache shmcb:/var/cache/mod_ssl/scache(512000)
SSLSessionCacheTimeout 300
SSLMutex default
SSLRandomSeed startup file:/dev/urandom 256
SSLRandomSeed connect builtin
ServerAdmin webmastr@kampret.id
DocumentRoot /var/www/html/webmail-1.4.17
ServerName webmail.kampret.id
ErrorLog logs/webmail.kampret.id_ssl
SSLEngine on
SSLProtocol all -SSLv2 -SSLv3
SSLCertificateFile /etc/pki/ssl/webmail.kampret.id.crt
SSLCertificateKeyFile /etc/pki/ssl/webmail.kampret.id.key
SSLCACertificateFile /etc/pki/ssl/CA.pem
ServerPath /var/www/html
No comments:
Post a Comment