Sponsored Content
Operating Systems Linux Apache wildcard ssl on subdomain serves same page for non ssl virtualhosts Post 303001997 by ashokvpp on Wednesday 16th of August 2017 12:07:34 AM
Old 08-16-2017
Apache wildcard ssl on subdomain serves same page for non ssl virtualhosts

Issue observed: I have configured ng.my-site.com using widlcard ssl cert. When I hit https://www.my-site.com it loads ng.my-site.com website!

please advise if I missed any concept / configs... Thank you!

httpd.conf

Code:
<VirtualHost *:80>
    ServerName www.my-site.com
    ServerAdmin webmaster@my-site.com

   DocumentRoot /var/www/html/mysite
   ErrorLog logs/my-site-error.log
   CustomLog logs/my-site-access.log combined

</VirtualHost>
<VirtualHost *:80>
    ServerName ng.my-site.com
    ServerAdmin webmaster@my-site.com

   DocumentRoot /var/www/html/ng
   ErrorLog logs/ng-my-site-error.log
   CustomLog logs/ng-my-site-access.log combined

</VirtualHost>

ssl.conf
Code:
<VirtualHost ng.my-site.com:443>
    ServerName ng.my-site.com

    ServerAdmin webmaster@my-site.com

SSLEngine on
SSLCertificateFile /etc/httpd/ssl/apache.crt
SSLCertificateKeyFile /etc/httpd/ssl/apache.key 

DocumentRoot /var/www/html/ng
ErrorLog logs/ng-my-site-ssl-error.log
CustomLog logs/ng-my-site-ssl-access.log combined

</VirtualHost>

 

10 More Discussions You Might Find Interesting

1. UNIX for Dummies Questions & Answers

apache-ssl https-problem?

hi folks. i know that this is not a realī unix problem, itīs an apache-webserver problem, but maybe you can help me? i have installed apache & mod_ssl, done a certificate, and configured my server well, but apache only understands "http://servername", not "https://servername". any ideas? ... (1 Reply)
Discussion started by: loitschix
1 Replies

2. Solaris

Apache with SSL problem

Hi All, I'm attempting to build Apache 1.3.27 on a new Solaris 9 system. I am using following "Option 2" in the INSTALL of the mod_ssl-2.8.12-1.3.27, and I'm stumped. After I configure and make all the required components the make of the Apache server itself stops at: flex... (2 Replies)
Discussion started by: b_manu78
2 Replies

3. HP-UX

Apache and SSL

When everytime I start apache, it asks me to enter pass phrase, and I have to enter the pass phrase manually. I would like to write a script to monitor the apache, such that it will check the apache status, if it is stopped, then start it automatically. However, the script fails since the pass... (1 Reply)
Discussion started by: alfredo
1 Replies

4. UNIX for Advanced & Expert Users

Apache ssl questions for experts

Hi, I have configured apache 2.0.59 with mod_ssl to set up a proxy to my app server. Incomming traffic https outgoing http. The listen port for the ssl port is 8050 not 443. When I start the server and I test it i get an error message. I googled for it and found the following expaination. ... (3 Replies)
Discussion started by: elvis00
3 Replies

5. UNIX for Dummies Questions & Answers

to enable POP3(ssl) and SMTP(ssl) in Squid

i have configured Squid proxy server in Fedora 8 with two network interfaces. HTTP, HTTPS, FTP are working fine but we are unable to download mails using mail clients from mail server with POP3(ssl) and SMTP(ssl). so please someone help us how to enable pop and smtp in Squid. (1 Reply)
Discussion started by: praneel2k
1 Replies

6. Solaris

SSL key Apache

We are running Apache 1.3 on solaris 8 we have renewed our ssl key with verisign. They have confirmed renewel and new ssl certifcate is appended to the end of the email. out apache config file has two directives SSLCertificateFile /export/home/apache/conf/ssl.crt/xxxx.crt SSLCertificationKeyFile... (2 Replies)
Discussion started by: Tirmazi
2 Replies

7. Web Development

Apache SSL Help

I had to update the CA Trusted Chains on two different UNIX servers running Apache. After looking through some documentation, it said that after the new CA's were installed, I had to run the /usr/ccs/bin/make command in order to create the symbolic links for apache to recognize the certs. On the... (1 Reply)
Discussion started by: camerodity
1 Replies

8. Web Development

Apache, cgi script run twice when ssl, once when not ssl

I have interesting problem. https:/host/some/x.cgi - this script has run twice when I call this url But http:/host/some/x.cgi work fine, only once. Output is text/plain. If I change output format to the Content-type text/html, then both urls works fine - executed only once. (2 Replies)
Discussion started by: kshji
2 Replies

9. Web Development

Apache - ModSSL (SSL Version?)

Does anyone know where Apache's use of SSL_VERSION_LIBRARY is defined and pulled from, in regard to headers? So far, I've tracked it down to mod_ssl. Which is fine, however, when I recompile mod_ssl with a new version of OpenSSL, and install the module, the request headers still report the old... (0 Replies)
Discussion started by: sun2ecliptic
0 Replies

10. IP Networking

configure apache to work with ssl

Hi, I need help to configure the apache to work with ssl. I have managed to create self-signed certificate according to the instruction in the following link. So I have the crt file and the key file. however when I add: <Virtualhost *:443> SSLEngine on ... (1 Reply)
Discussion started by: programAngel
1 Replies
NNTPSEND(8)						      System Manager's Manual						       NNTPSEND(8)

NAME
nntpsend - send Usenet articles to remote site SYNOPSIS
nntpsend [ -a ] [ -c ] [ -d ] [ -D ] [ -p ] [ -r ] [ -S ] [ -l ] [ -n ] [ -s size ] [ -t timeout ] [ -T timelimit ] [ -P portnum ] [ site- name fqdn ] ... DESCRIPTION
Nntpsend is a front-end that invokes innxmit(1) to send Usenet articles to a remote NNTP site. The sites to be fed may be specified by giving sitename fqdn pairs on the command line. If no such pairs are given, nntpsend defaults to the information given in the nntpsend.ctl(5) config file. The sitename should be the name of the site as specified in the newsfeeds(5) file. The fqdn should be the hostname or IP address of the remote site. An innxmit is launched for sites with queued news. All innxmit processes are spawned in the background and the script waits for them all to finish before returning. Output is sent to the file /var/log/news/nntpsend.log. In order to keep from overwhelming the local system, nntpsend waits five seconds before spawned each child. Nntpsend expects that the batchfile for a site is named /var/spool/news/out.going/sitename. To prevent batchfile corruption, shlock(1) is used to ``lock'' these files. When sitename fqdn pairs are given on the command line, any flags given on the command completely describe how innxmit and shrinkfile oper- ate. When no such pairs are given on the command line, then the information found in nntpsend.ctl becomes the default flags for that site. Any flags given on the command line override the default flags for the site. OPTIONS
-c -d -D The ``-d'' flag causes nntpsend to send output to stdout rather than the log file /var/log/news/nntpsend.log. The ``-D'' flag does the same and it passes ``-d'' to all innxmit invocatins which in turn causes innxmit to go into debug mode. -s If the ``-s'' flag is used, then shrinkfile(1) will be invoked to perform a tail truncation on the batchfile and the flag will be passed to it. -l If the ``-l'' (lazy) flag is specified, then the script will be more aggressive about deciding there is nothing to be done. This can be useful when using nntpsend as a backup for a site fed by nntplink. -a -p -r -S -t -T The ``-a'', ``-p'', ``-P'', ``-r'', ``-S'', ``-t'', and ``-T'' flags are passed on to the child innxmit program. See innxmit(8) for more details. Note that if the ``-p'' flag is used then no connection is made and no articles are fed to the remote site. It is useful to have cron(8) invoke nntpsend with this flag in case a site cannot be reached for an extended period of time. EXAMPLES
With the following control file: nsavax:erehwon.nsavax.gov::-S -t60 group70:group70.org:: walldrug:walldrug.com:4m-1m:-T1800 -t300 kremvax:kremvax.cis:2m: The command: nntpsend will result in the following: Sitename Truncation Innxmit flags nsavax (none) -a -S -t60 group70 (none) -a -t180 walldrug 1m if >4m -a -T1800 -t300 kremvax 2m -a -t180 The command: nntpsend -d -T1200 will result in the following: Sitename Truncation Innxmit flags nsavax (none) -a -d -S -T1200 -t60 group70 (none) -a -d -T1200 -t180 walldrug 1m if >4m -a -d -T1200 -t300 kremvax 2m -a -d -T1200 -t180 The command: nntpsend -s 5m -T1200 nsavax erehwon.nsavax.gov group70 group70.org will result in the following: Sitename Truncation Innxmit flags nsavax 5m -a -T1200 -t180 group70 5m -a -T1200 -t180 Remember that ``-a'' is always given, and ``-t'' defaults to 180. HISTORY
Written by Landon Curt Noll <chongo@toad.com> and Rich $alz <rsalz@uunet.uu.net> for InterNetNews. This is revision 1.9, dated 1996/10/29. SEE ALSO
innxmit(1), newsfeeds(5), nntpsend.ctl(5), shrinkfile(1). NNTPSEND(8)
All times are GMT -4. The time now is 06:43 AM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy