跳至主要内容

Apache

如果您已经在使用Apache作为Web服务器,您可以将其配置为反向代理以启用SSL。 以下配置示例需要Apache >= 2.4.47。

使用a2enmod命令确保所需的Apache模块已启用。

$ sudo a2enmod proxy proxy_http ssl headers
<VirtualHost *:80>
ServerName live.example.com
ServerAdmin admin@example.com

Redirect permanent / https://live.example.com

</VirtualHost>

# live-le-ssl.conf

<IfModule mod_ssl.c>
<VirtualHost *:443>
ServerName live.example.com
ServerAdmin admin@example.com

ProxyRequests Off
ProxyPreserveHost On
AllowEncodedSlashes NoDecode

ProxyPass / http://localhost:8080/ upgrade=websocket
ProxyPassReverse / http://localhost:8080/

RequestHeader set X-Forwarded-Proto "https"
RequestHeader set X-Forwarded-Port "443"

SSLCertificateFile /path/to/fullchain.pem
SSLCertificateKeyFile /path/to/privkey.pem
Include /etc/letsencrypt/options-ssl-apache.conf

</VirtualHost>
</IfModule>

Improve this page

See something missing or incorrect? Edit this page and improve the documentation for everyone.

Contributors to this documentation
Gabe KangasGabe Kangas
D
Daniel Scharon
leucleuc