Hi
i'm looking for some advice on apache ssl routing for 2 url.Fyi one url is certificate is verified by GeoTrust and another url on the other site certificate is verified by Verisgn.Is that possible to routing between this two url.
Here is my scenario
I have an https:// site running on an IIS 5.0 server (https://somesite.com- Certificate verified by GeoTrust) behind an off-campus firewall. I am setting up a Apache 2.0.48 as the SSL Reverse Proxy to access backend server (https://mybackendserver.com-Certificate verified by Verisign) . The Proxy server IP is allowed in the firewall rule set.
Here is my SSL rewrite rules
My main questions are:
1. is that possible to do routing of 2 url certificate verified by two different company??
Any advice are much appreciate.
Thanks in advance
Last edited by pludi; 11-07-2009 at 08:59 AM..
Reason: code tags, please...
hi folks.
i know that this is not a realī unix problem, itīs an apache-webserver problem, but maybe you can help me?
i have installed apache & mod_ssl, done a certificate, and configured my server well, but apache only understands "http://servername", not "https://servername".
any ideas?
... (1 Reply)
Hi All,
I'm attempting to build Apache 1.3.27 on a new Solaris 9 system. I am using
following "Option 2" in the INSTALL of the mod_ssl-2.8.12-1.3.27, and I'm
stumped.
After I configure and make all the required components
the make of the Apache server itself stops at:
flex... (2 Replies)
When everytime I start apache, it asks me to enter pass phrase, and I have to enter the pass phrase manually.
I would like to write a script to monitor the apache, such that it will check the apache status, if it is stopped, then start it automatically. However, the script fails since the pass... (1 Reply)
Hi,
I have configured apache 2.0.59 with mod_ssl to set up a proxy to my app server. Incomming traffic https outgoing http. The listen port for the ssl port is 8050 not 443. When I start the server and I test it i get an error message. I googled for it and found the following expaination.
... (3 Replies)
We are running Apache 1.3 on solaris 8 we have renewed our ssl key with verisign. They have confirmed renewel and new ssl certifcate is appended to the end of the email.
out apache config file has two directives
SSLCertificateFile /export/home/apache/conf/ssl.crt/xxxx.crt
SSLCertificationKeyFile... (2 Replies)
I had to update the CA Trusted Chains on two different UNIX servers running Apache. After looking through some documentation, it said that after the new CA's were installed, I had to run the /usr/ccs/bin/make command in order to create the symbolic links for apache to recognize the certs. On the... (1 Reply)
I have interesting problem.
https:/host/some/x.cgi
- this script has run twice when I call this url
But
http:/host/some/x.cgi
work fine, only once.
Output is text/plain.
If I change output format to the Content-type text/html,
then both urls works fine - executed only once. (2 Replies)
Does anyone know where Apache's use of SSL_VERSION_LIBRARY is defined and pulled from, in regard to headers? So far, I've tracked it down to mod_ssl. Which is fine, however, when I recompile mod_ssl with a new version of OpenSSL, and install the module, the request headers still report the old... (0 Replies)
Hi,
I have following problem. I have an Apache httpd v2 running. One of it's URLs is secured by an LDAP authentication encrypted via SSL. This works fine with the given directives. Currently there is following directive to tell with which LDAP server to authenticate:
AuthLDAPURL... (0 Replies)
Issue observed: I have configured ng.my-site.com using widlcard ssl cert. When I hit https://www.my-site.com it loads ng.my-site.com website!
please advise if I missed any concept / configs... Thank you!
httpd.conf
<VirtualHost *:80>
ServerName www.my-site.com
ServerAdmin... (0 Replies)
Discussion started by: ashokvpp
0 Replies
LEARN ABOUT CENTOS
ssl_get_peer_certificate
SSL_get_peer_certificate(3) OpenSSL SSL_get_peer_certificate(3)NAME
SSL_get_peer_certificate - get the X509 certificate of the peer
SYNOPSIS
#include <openssl/ssl.h>
X509 *SSL_get_peer_certificate(const SSL *ssl);
DESCRIPTION
SSL_get_peer_certificate() returns a pointer to the X509 certificate the peer presented. If the peer did not present a certificate, NULL is
returned.
NOTES
Due to the protocol definition, a TLS/SSL server will always send a certificate, if present. A client will only send a certificate when
explicitly requested to do so by the server (see SSL_CTX_set_verify(3)). If an anonymous cipher is used, no certificates are sent.
That a certificate is returned does not indicate information about the verification state, use SSL_get_verify_result(3) to check the
verification state.
The reference count of the X509 object is incremented by one, so that it will not be destroyed when the session containing the peer
certificate is freed. The X509 object must be explicitly freed using X509_free().
RETURN VALUES
The following return values can occur:
NULL
No certificate was presented by the peer or no connection was established.
Pointer to an X509 certificate
The return value points to the certificate presented by the peer.
SEE ALSO ssl(3), SSL_get_verify_result(3), SSL_CTX_set_verify(3)1.0.1e 2013-02-11 SSL_get_peer_certificate(3)