亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频

? 歡迎來到蟲蟲下載站! | ?? 資源下載 ?? 資源專輯 ?? 關于我們
? 蟲蟲下載站

?? ssl_faq.html.en

?? Apache_2.0.59-Openssl_0.9 配置tomcat. Apache_2.0.59-Openssl_0.9 配置tomcat.
?? EN
?? 第 1 頁 / 共 4 頁
字號:
<?xml version="1.0" encoding="ISO-8859-1"?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en"><head><!--
        XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
              This file is generated from xml source: DO NOT EDIT
        XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
      -->
<title>SSL/TLS Strong Encryption: FAQ - Apache HTTP Server</title>
<link href="../style/css/manual.css" rel="stylesheet" media="all" type="text/css" title="Main stylesheet" />
<link href="../style/css/manual-loose-100pc.css" rel="alternate stylesheet" media="all" type="text/css" title="No Sidebar - Default font size" />
<link href="../style/css/manual-print.css" rel="stylesheet" media="print" type="text/css" />
<link href="../images/favicon.ico" rel="shortcut icon" /></head>
<body id="manual-page"><div id="page-header">
<p class="menu"><a href="../mod/">Modules</a> | <a href="../mod/directives.html">Directives</a> | <a href="../faq/">FAQ</a> | <a href="../glossary.html">Glossary</a> | <a href="../sitemap.html">Sitemap</a></p>
<p class="apache">Apache HTTP Server Version 2.0</p>
<img alt="" src="../images/feather.gif" /></div>
<div class="up"><a href="./"><img title="&lt;-" alt="&lt;-" src="../images/left.gif" /></a></div>
<div id="path">
<a href="http://www.apache.org/">Apache</a> &gt; <a href="http://httpd.apache.org/">HTTP Server</a> &gt; <a href="http://httpd.apache.org/docs/">Documentation</a> &gt; <a href="../">Version 2.0</a> &gt; <a href="./">SSL/TLS</a></div><div id="page-content"><div id="preamble"><h1>SSL/TLS Strong Encryption: FAQ</h1>
<div class="toplang">
<p><span>Available Languages: </span><a href="../en/ssl/ssl_faq.html" title="English">&nbsp;en&nbsp;</a></p>
</div>

<blockquote>
<p>The wise man doesn't give the right answers,
he poses the right questions.</p>
<p class="cite">-- <cite>Claude Levi-Strauss</cite></p>

</blockquote>
<p>This chapter is a collection of frequently asked questions (FAQ) and
corresponding answers following the popular USENET tradition. Most of these
questions occurred on the Newsgroup <code><a href="news:comp.infosystems.www.servers.unix">comp.infosystems.www.servers.unix</a></code> or the mod_ssl Support
Mailing List <code><a href="mailto:modssl-users@modssl.org">modssl-users@modssl.org</a></code>. They are collected at this place
to avoid answering the same questions over and over.</p>

<p>Please read this chapter at least once when installing mod_ssl or at least
search for your problem here before submitting a problem report to the
author.</p>
</div>
<div id="quickview"><ul id="toc"><li><img alt="" src="../images/down.gif" /> <a href="#about">About The Module</a></li>
<li><img alt="" src="../images/down.gif" /> <a href="#installation">Installation</a></li>
<li><img alt="" src="../images/down.gif" /> <a href="#aboutconfig">Configuration</a></li>
<li><img alt="" src="../images/down.gif" /> <a href="#aboutcerts">Certificates</a></li>
<li><img alt="" src="../images/down.gif" /> <a href="#aboutssl">The SSL Protocol</a></li>
<li><img alt="" src="../images/down.gif" /> <a href="#support">mod_ssl Support</a></li>
</ul></div>
<div class="top"><a href="#page-header"><img alt="top" src="../images/up.gif" /></a></div>
<div class="section">
<h2><a name="about" id="about">About The Module</a></h2>
<ul>
<li><a href="#history">What is the history of mod_ssl?</a></li>
<li><a href="#y2k">mod_ssl and Year 2000?</a></li>
<li><a href="#wassenaar">mod_ssl and Wassenaar Arrangement?</a></li>
</ul>

<h3><a name="history" id="history">What is the history of mod_ssl?</a></h3>
<p>The mod_ssl v1 package was initially created in April 1998 by <a href="mailto:rse@engelschall.com">Ralf S. Engelschall</a> via porting <a href="mailto:ben@algroup.co.uk">Ben Laurie</a>'s <a href="http://www.apache-ssl.org/">Apache-SSL</a> 1.17 source patches for
    Apache 1.2.6 to Apache 1.3b6. Because of conflicts with Ben
    Laurie's development cycle it then was re-assembled from scratch for
    Apache 1.3.0 by merging the old mod_ssl 1.x with the newer Apache-SSL
    1.18. From this point on mod_ssl lived its own life as mod_ssl v2. The
    first publicly released version was mod_ssl 2.0.0 from August 10th,
    1998. </p>
    
    <p>After US export restrictions on cryptographic software were
    loosened, <code class="module"><a href="../mod/mod_ssl.html">mod_ssl</a></code> became part of the Apache HTTP
    Server with the release of Apache httpd 2.</p>


<h3><a name="wassenaar" id="wassenaar">Is mod_ssl affected by the Wassenaar Arrangement?</a></h3>
<p>First, let us explain what <dfn>Wassenaar</dfn> and its <dfn>Arrangement on
    Export Controls for Conventional Arms and Dual-Use Goods and
    Technologies</dfn> is: This is a international regime, established in 1995, to
    control trade in conventional arms and dual-use goods and technology. It
    replaced the previous <dfn>CoCom</dfn> regime. Further details on 
    both the Arrangement and its signatories are available at <a href="http://www.wassenaar.org/">http://www.wassenaar.org/</a>.</p>

    <p>In short, the aim of the Wassenaar Arrangement is to prevent the build up
    of military capabilities that threaten regional and international security
    and stability. The Wassenaar Arrangement controls the export of
    cryptography as a dual-use good, that is, something that has both military and
    civilian applications. However, the Wassenaar Arrangement also provides an
    exemption from export controls for mass-market software and free software.</p>
    
    <p>In the current Wassenaar <cite>List of Dual Use Goods and Technologies And
    Munitions</cite>, under <q>GENERAL SOFTWARE NOTE (GSN)</q> it says
    <q>The Lists do not control "software" which is either: 1. [...] 2. "in
    the public domain".</q> And under <q>DEFINITIONS OF TERMS USED IN
    THESE LISTS</q> we find <q>In the public
    domain</q> defined as <q>"technology" or "software" which has been made
    available without restrictions upon its further dissemination. Note:
    Copyright restrictions do not remove "technology" or "software" from being
    "in the public domain".</q></p>
    
    <p>So, both mod_ssl and OpenSSL are <q>in the public domain</q> for the purposes
    of the Wassenaar Arrangement and its <q>List of Dual Use Goods and
    Technologies And Munitions List</q>, and thus not affected by its provisions.</p>


</div><div class="top"><a href="#page-header"><img alt="top" src="../images/up.gif" /></a></div>
<div class="section">
<h2><a name="installation" id="installation">Installation</a></h2>
<ul>
<li><a href="#mutex">Why do I get permission errors related to 
SSLMutex when I start Apache?</a></li>
<li><a href="#entropy">Why does mod_ssl stop with the error "Failed to 
generate temporary 512 bit RSA private key", when I start Apache?</a></li>
</ul>

<h3><a name="mutex" id="mutex">Why do I get permission errors related to 
	SSLMutex when I start Apache?</a></h3>
    <p>Errors such as ``<code>mod_ssl: Child could not open
    SSLMutex lockfile /opt/apache/logs/ssl_mutex.18332 (System error follows)
    [...] System: Permission denied (errno: 13)</code>'' are usually
    caused by overly restrictive permissions on the <em>parent</em> directories.
    Make sure that all parent directories (here <code>/opt</code>,
    <code>/opt/apache</code> and <code>/opt/apache/logs</code>) have the x-bit
    set for, at minimum, the UID under which Apache's children are running (see
    the <code class="directive"><a href="../mod/mpm_common.html#user">User</a></code> directive).</p>


<h3><a name="entropy" id="entropy">Why does mod_ssl stop with the error
	"Failed to generate temporary 512 bit RSA private key", when I start 
	Apache?</a></h3>
    <p>Cryptographic software needs a source of unpredictable data
    to work correctly. Many open source operating systems provide
    a "randomness device" that serves this purpose (usually named
    <code>/dev/random</code>). On other systems, applications have to
    seed the OpenSSL Pseudo Random Number Generator (PRNG) manually with
    appropriate data before generating keys or performing public key
    encryption. As of version 0.9.5, the OpenSSL functions that need
    randomness report an error if the PRNG has not been seeded with
    at least 128 bits of randomness.</p>
    <p>To prevent this error, <code class="module"><a href="../mod/mod_ssl.html">mod_ssl</a></code> has to provide 
    enough entropy to the PRNG to allow it to work correctly. This can 
    be done via the <code class="directive"><a href="../mod/mod_ssl.html#sslrandomseed">SSLRandomSeed</a></code> 
    directives.</p>

</div><div class="top"><a href="#page-header"><img alt="top" src="../images/up.gif" /></a></div>
<div class="section">
<h2><a name="aboutconfig" id="aboutconfig">Configuration</a></h2>
<ul>
<li><a href="#parallel">Is it possible to provide HTTP and HTTPS from 
the same server?</a></li>
<li><a href="#ports">Which port does HTTPS use?</a></li>
<li><a href="#httpstest">How do I speak HTTPS manually for testing 
purposes?</a></li>
<li><a href="#hang">Why does the connection hang when I connect to my 
SSL-aware Apache server</a></li>
<li><a href="#refused">Why do I get ``Connection Refused'' errors, when 
trying to access my newly installed Apache+mod_ssl server via HTTPS?</a></li>
<li><a href="#envvars">Why are the <code>SSL_XXX</code> variables not
available to my CGI &amp; SSI scripts?</a></li>
<li><a href="#relative">How can I switch between HTTP and HTTPS in 
relative hyperlinks?</a></li>
</ul>

<h3><a name="parallel" id="parallel">Is it possible to provide HTTP and HTTPS 
	from the same server?</a></h3>
    <p>Yes. HTTP and HTTPS use different server ports (HTTP binds to 
    port 80, HTTPS to port 443), so there is no direct conflict between 
    them. You can either run two separate server instances bound to 
    these ports, or use Apache's elegant virtual hosting facility to 
    create two virtual servers over one instance of Apache - one 
    responding to requests on port 80 and speaking HTTP and the other 
    responding to requests on port 443 speaking HTTPS.</p>


<h3><a name="ports" id="ports">Which port does HTTPS use?</a></h3>
<p>You can run HTTPS on any port, but the standards specify port 443, which
    is where any HTTPS compliant browser will look by default. You can force
    your browser to look on a different port by specifying it in the URL like
    this (for port 666): <code>https://secure.server.dom:666/</code></p>


<h3><a name="httpstest" id="httpstest">How do I speak HTTPS manually for testing purposes?</a></h3>
 <p>While you usually just use</p>
    
    <div class="example"><p><code>$ telnet localhost 80<br />
    GET / HTTP/1.0</code></p></div>

    <p>for simple testing of Apache via HTTP, it's not so easy for
    HTTPS because of the SSL protocol between TCP and HTTP. With the
    help of OpenSSL's <code>s_client</code> command, however, you can 
    do a similar check for HTTPS:</p>
    
    <div class="example"><p><code>$ openssl s_client -connect localhost:443 -state -debug<br />
    GET / HTTP/1.0</code></p></div>
    
    <p>Before the actual HTTP response you will receive detailed 
    information about the SSL handshake. For a more general command 
    line client which directly understands both HTTP and HTTPS, can 
    perform GET and POST operations, can use a proxy, supports byte 
    ranges, etc. you should have a look at the nifty 
    <a href="http://curl.haxx.se/">cURL</a> tool. Using this, you can 
    check that Apache is responding correctly on ports 80 and 443 as 
    follows:</p>
    
    <div class="example"><p><code>$ curl http://localhost/<br />
    $ curl https://localhost/</code></p></div>


<h3><a name="hang" id="hang">Why does the connection hang when I connect 
    to my SSL-aware Apache server?</a></h3>
<p>Because you connected with HTTP to the HTTPS port, i.e. you used an URL of
    the form ``<code>http://</code>'' instead of ``<code>https://</code>''.
    This also happens the other way round when you connect via HTTPS to a HTTP
    port, i.e. when you try to use ``<code>https://</code>'' on a server that
    doesn't support SSL (on this port). Make sure you are connecting to a
    virtual server that supports SSL, which is probably the IP associated with
    your hostname, not localhost (127.0.0.1).</p>


<h3><a name="refused" id="refused">Why do I get ``Connection Refused'' messages, 
    when trying to access my newly installed Apache+mod_ssl server via HTTPS?</a></h3>
<p>This can happen for various reasons. The most common mistakes 
    include starting Apache with just <code>apachectl start</code> (or
    <code class="program"><a href="../programs/httpd.html">httpd</a></code>) instead of <code>apachectl startssl</code> (or
    <code>httpd -DSSL</code>). Your configuration may also be incorrect. 
    Please make sure that your <code class="directive"><a href="../mod/mpm_common.html#listen">Listen</a></code> directives match your 
    <code class="directive"><a href="../mod/core.html#virtualhost">&lt;VirtualHost&gt;</a></code>
    directives. If all else fails, please start afresh, using the default 
    configuration provided by <code class="module"><a href="../mod/mod_ssl.html">mod_ssl</a></code>.</p>


<h3><a name="envvars" id="envvars">Why are the <code>SSL_XXX</code> variables 
    not available to my CGI &amp; SSI scripts?</a></h3>
<p>Please make sure you have ``<code>SSLOptions +StdEnvVars</code>''
    enabled for the context of your CGI/SSI requests.</p>


<h3><a name="relative" id="relative">How can I switch between HTTP and HTTPS in relative 
    hyperlinks?</a></h3>

<p>Usually, to switch between HTTP and HTTPS, you have to use 
    fully-qualified hyperlinks (because you have to change the URL 
    scheme).  Using <code class="module"><a href="../mod/mod_rewrite.html">mod_rewrite</a></code> however, you can 
    manipulate relative hyperlinks, to achieve the same effect.</p>
    <div class="example"><p><code>
    RewriteEngine on<br />
    RewriteRule   ^/(.*):SSL$   https://%{SERVER_NAME}/$1 [R,L]<br />
    RewriteRule   ^/(.*):NOSSL$ http://%{SERVER_NAME}/$1  [R,L]
    </code></p></div>

    <p>This rewrite ruleset lets you use hyperlinks of the form
    <code>&lt;a href="document.html:SSL"&gt;</code>, to switch to HTTPS
    in a relative link.</p>

</div><div class="top"><a href="#page-header"><img alt="top" src="../images/up.gif" /></a></div>
<div class="section">
<h2><a name="aboutcerts" id="aboutcerts">Certificates</a></h2>
<ul>
<li><a href="#keyscerts">What are RSA Private Keys, CSRs and 
Certificates?</a></li>
<li><a href="#startup">Is there a difference on startup between
the original Apache and an SSL-aware Apache?</a></li>
<li><a href="#selfcert">How do I create a self-signed SSL 
Certificate for testing purposes?</a></li>
<li><a href="#realcert">How do I create a real SSL Certificate?</a></li>
<li><a href="#ownca">How do I create and use my own Certificate 
Authority (CA)?</a></li>

?? 快捷鍵說明

復制代碼 Ctrl + C
搜索代碼 Ctrl + F
全屏模式 F11
切換主題 Ctrl + Shift + D
顯示快捷鍵 ?
增大字號 Ctrl + =
減小字號 Ctrl + -
亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频
中文字幕一区在线观看视频| 一区二区三区在线影院| 日本不卡免费在线视频| 91网址在线看| 国产精品免费久久久久| 粉嫩av亚洲一区二区图片| 2017欧美狠狠色| 精品综合久久久久久8888| 日韩欧美亚洲一区二区| 日本伊人午夜精品| 欧美一区二区美女| 免费久久精品视频| 欧美va日韩va| 韩国精品一区二区| 久久久精品综合| 国产丶欧美丶日本不卡视频| wwww国产精品欧美| 国产二区国产一区在线观看| 欧美国产乱子伦| www.欧美色图| 亚洲卡通欧美制服中文| 色婷婷av久久久久久久| 一区二区三区欧美日韩| 欧美日韩在线观看一区二区| 亚洲国产精品久久久久秋霞影院 | 丝袜亚洲另类丝袜在线| 在线成人av影院| 日本不卡视频在线观看| 精品国产乱码久久久久久闺蜜| 黄一区二区三区| 国产精品免费网站在线观看| 99久久免费精品| 亚洲午夜在线电影| 日韩欧美高清在线| 国产精品夜夜嗨| 日韩一区欧美一区| 在线亚洲+欧美+日本专区| 亚洲电影你懂得| 欧美大片一区二区| 成人小视频在线| 亚洲精品美国一| 日韩一级高清毛片| 东方aⅴ免费观看久久av| 亚洲日本电影在线| 亚洲国产日韩综合久久精品| 久久精品国产99久久6| 国产酒店精品激情| 亚洲精品一线二线三线无人区| 国产69精品久久久久777| 成人欧美一区二区三区1314 | 色婷婷综合久久久久中文一区二区| 一区二区三区日韩精品| 日韩写真欧美这视频| 国产精品99久久久久久久vr| 亚洲人成影院在线观看| 制服丝袜成人动漫| 国产**成人网毛片九色| 一区二区三区免费| 欧美大片一区二区| 91日韩精品一区| 男女男精品视频| |精品福利一区二区三区| 4438成人网| 成人精品在线视频观看| 亚洲mv大片欧洲mv大片精品| 久久久久久久久久久久电影 | 色菇凉天天综合网| 蜜臀精品久久久久久蜜臀| 国产精品视频在线看| 91精品久久久久久久久99蜜臂| 盗摄精品av一区二区三区| 亚洲国产美国国产综合一区二区| 久久综合狠狠综合久久综合88 | 欧美日韩日日骚| 国产成人av一区| 日韩成人一区二区三区在线观看| 国产精品国产三级国产普通话蜜臀 | 99久久精品国产一区| 美女性感视频久久| 亚洲免费电影在线| 久久女同性恋中文字幕| 在线一区二区视频| 国产91在线观看| 日韩成人免费看| 曰韩精品一区二区| 久久精品亚洲乱码伦伦中文| 欧美日韩国产成人在线免费| 成人三级伦理片| 久久精品久久精品| 午夜久久久久久久久久一区二区| 日本一区二区免费在线观看视频 | 日韩三级在线观看| 日本韩国欧美三级| 高清成人在线观看| 久久精品免费观看| 日韩中文字幕亚洲一区二区va在线 | 蜜臀a∨国产成人精品| 亚洲天堂中文字幕| 国产日韩欧美一区二区三区综合| 在线不卡的av| 欧美午夜精品久久久久久超碰 | 久草这里只有精品视频| 亚洲一二三区在线观看| 国产精品嫩草影院com| 久久综合狠狠综合久久激情| 欧美一区二区美女| 欧美日韩国产小视频| 色吧成人激情小说| a美女胸又www黄视频久久| 国产高清不卡二三区| 国内精品久久久久影院薰衣草| 日韩成人av影视| 丝袜美腿一区二区三区| 亚洲国产精品精华液网站 | 国产精品久线观看视频| 久久人人爽人人爽| 精品福利在线导航| 精品久久久久久无| 欧美一区二区三区男人的天堂| 欧美视频日韩视频| 欧美性受xxxx黑人xyx| 日本韩国一区二区| 在线观看不卡视频| 91成人看片片| 欧美午夜精品久久久久久超碰| 日本韩国一区二区| 在线观看www91| 欧洲精品在线观看| 欧洲一区在线观看| 在线区一区二视频| 欧美日韩免费在线视频| 欧美撒尿777hd撒尿| 欧洲一区在线电影| 欧美女孩性生活视频| 欧美日韩一级视频| 国产福利一区二区| 国产91露脸合集magnet| 国产一区999| 国产91色综合久久免费分享| 国产成人在线视频免费播放| 国产激情91久久精品导航| 国产另类ts人妖一区二区| 久久99国产精品尤物| 国产在线精品不卡| 国产成人aaaa| 成人av在线影院| 91丝袜高跟美女视频| 一本大道av一区二区在线播放 | 国产精品一区二区久久不卡| 国产成人精品免费| a美女胸又www黄视频久久| 色一情一乱一乱一91av| 91黄视频在线观看| 9191精品国产综合久久久久久| 日韩精品一区二区三区在线观看| 精品国产a毛片| 国产欧美1区2区3区| 日韩一区在线看| 亚洲国产精品久久人人爱蜜臀| 日韩av电影一区| 国产精品456| 91蜜桃视频在线| 在线电影国产精品| 久久久久国产一区二区三区四区| 国产精品嫩草影院av蜜臀| 一区二区在线观看av| 三级成人在线视频| 国产在线观看一区二区| 99视频国产精品| 欧美日韩精品欧美日韩精品一 | 精品国产不卡一区二区三区| 欧美激情在线观看视频免费| 亚洲麻豆国产自偷在线| 日日摸夜夜添夜夜添国产精品| 国产麻豆午夜三级精品| 不卡视频一二三| 精品视频一区三区九区| 久久亚洲春色中文字幕久久久| 亚洲欧美日韩精品久久久久| 日韩1区2区3区| www.一区二区| 欧美一区二区三区免费| 欧美国产97人人爽人人喊| 亚洲地区一二三色| 国产一区二区美女| 在线观看免费视频综合| 精品欧美一区二区久久| 一区二区中文视频| 蜜臀av一区二区在线观看| 99热这里都是精品| 日韩欧美国产一区二区三区| 中文字幕欧美一| 美腿丝袜一区二区三区| 99精品久久免费看蜜臀剧情介绍| 91精品国产91热久久久做人人| 亚洲欧洲精品成人久久奇米网| 日本视频免费一区| 色哟哟一区二区在线观看| www国产精品av| 午夜精品在线视频一区|