Anpassung an Let's Encrypt

This commit is contained in:
Sven Velt 2024-10-17 12:04:12 +02:00
parent 398da6546d
commit 245687aa9e

View file

@ -141,7 +141,8 @@ SSLEngine on
# Some ECC cipher suites (http://www.ietf.org/rfc/rfc4492.txt) # Some ECC cipher suites (http://www.ietf.org/rfc/rfc4492.txt)
# require an ECC certificate which can also be configured in # require an ECC certificate which can also be configured in
# parallel. # parallel.
SSLCertificateFile "/usr/local/apache2/conf/server.crt" SSLCertificateFile "/var/lib/dehydrated/certs/tn00-mint.heinlein-akademie.de/cert.pem"
#SSLCertificateFile "/usr/local/apache2/conf/server.crt"
#SSLCertificateFile "/usr/local/apache2/conf/server-dsa.crt" #SSLCertificateFile "/usr/local/apache2/conf/server-dsa.crt"
#SSLCertificateFile "/usr/local/apache2/conf/server-ecc.crt" #SSLCertificateFile "/usr/local/apache2/conf/server-ecc.crt"
@ -151,7 +152,8 @@ SSLCertificateFile "/usr/local/apache2/conf/server.crt"
# you've both a RSA and a DSA private key you can configure # you've both a RSA and a DSA private key you can configure
# both in parallel (to also allow the use of DSA ciphers, etc.) # both in parallel (to also allow the use of DSA ciphers, etc.)
# ECC keys, when in use, can also be configured in parallel # ECC keys, when in use, can also be configured in parallel
SSLCertificateKeyFile "/usr/local/apache2/conf/server.key" SSLCertificateKeyFile "/var/lib/dehydrated/certs/tn00-mint.heinlein-akademie.de/privkey.pem"
#SSLCertificateKeyFile "/usr/local/apache2/conf/server.key"
#SSLCertificateKeyFile "/usr/local/apache2/conf/server-dsa.key" #SSLCertificateKeyFile "/usr/local/apache2/conf/server-dsa.key"
#SSLCertificateKeyFile "/usr/local/apache2/conf/server-ecc.key" #SSLCertificateKeyFile "/usr/local/apache2/conf/server-ecc.key"
@ -163,6 +165,7 @@ SSLCertificateKeyFile "/usr/local/apache2/conf/server.key"
# when the CA certificates are directly appended to the server # when the CA certificates are directly appended to the server
# certificate for convenience. # certificate for convenience.
#SSLCertificateChainFile "/usr/local/apache2/conf/server-ca.crt" #SSLCertificateChainFile "/usr/local/apache2/conf/server-ca.crt"
SSLCertificateChainFile "/var/lib/dehydrated/certs/tn00-mint.heinlein-akademie.de/fullchain.pem"
# Certificate Authority (CA): # Certificate Authority (CA):
# Set the CA certificate verification path where to find CA # Set the CA certificate verification path where to find CA