31 lines
1.3 KiB
Plaintext
31 lines
1.3 KiB
Plaintext
##
|
|
## SSL Virtual Host Context
|
|
##
|
|
# General setup for the virtual host
|
|
<VirtualHost *:443>
|
|
ServerName phpmyadmin-dev.gmolab.net
|
|
ServerAlias phpmyadmin-dev
|
|
CustomLog logs/phpmyadmin-dev_access_log common
|
|
ErrorLog logs/phpmyadmin-dev_error_log
|
|
|
|
# SSL
|
|
SSLEngine on
|
|
SSLHonorCipherOrder on
|
|
SSLProtocol all -SSLv2 -SSLv3 -TLSv1 -TLSv1.1
|
|
SSLHonorCipherOrder on
|
|
SSLCipherSuite ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:!aNULL:!eNULL:!LOW:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!RC4
|
|
# Enable HTTP/2, if available
|
|
Protocols h2 http/1.1
|
|
# HTTP Strict Transport Security (mod_headers is required) (63072000 seconds)
|
|
Header always set Strict-Transport-Security "max-age=63072000"
|
|
# certificats
|
|
SSLCertificateFile "/etc/httpd/auth/cert/gmolab.net.crt"
|
|
SSLCertificateKeyFile "/etc/httpd/auth/cert/gmolab.net.key"
|
|
SSLCertificateChainFile "/etc/httpd/auth/cert/gmolabCA.crt"
|
|
# proxy
|
|
RequestHeader set X-Forwarded-Proto "https"
|
|
ProxyPreserveHost On
|
|
ProxyPass "/" "http://127.0.0.1:8180/"
|
|
ProxyPassReverse "/" "http://127.0.0.1:8180/"
|
|
</VirtualHost>
|