차이

문서의 선택한 두 판 사이의 차이를 보여줍니다.

차이 보기로 링크

haproxy_ssl_설정 [2019/07/05 15:24] (현재)
koov 만듦
줄 1: 줄 1:
 +====== HAProxy SSL 설정 ======
 +
 +<WRAP prewrap>
 +<code vim>
 +frontend web
 +        bind *:80
 +        #bind *:443 ssl crt /​etc/​haproxy/​ssl/​nas.koov.net.pem crt /​etc/​haproxy/​ssl/​allthatlinux.com.pem crt /​etc/​haproxy/​ssl/​linuxdata.kr.pem crt /​etc/​haproxy/​ssl/​dev.koov.net.pem crt /​etc/​haproxy/​ssl/​jenkins.koov.net.pem
 +        bind *:443 ssl crt-list /​etc/​haproxy/​ssl/​crt-list.txt
 +        reqadd X-Forwarded-Proto:​\ https
 +        http-request set-header X-SSL %[ssl_fc]
 +        http-response set-header Cache-Control no-cache,\ max-age="​600"​
 +
 +
 +....
 +
 +backend backend_nas.koov.net
 +        redirect scheme https code 301 if !{ ssl_fc }
 +        server ​ static ​ 192.168.0.8:​5000 ​       check
 +
 +backend backend_home.koov.net
 +        redirect scheme https code 301 if !{ ssl_fc }
 +        server ​ static ​ 192.168.0.24:​80 ​        check
 +
 +backend backend_dev.koov.net
 +        redirect scheme https code 301 if !{ ssl_fc }
 +        server ​ static ​ 192.168.0.27:​80 ​        check
 +
 +backend backend_jenkins.koov.net
 +        redirect scheme https code 301 if !{ ssl_fc }
 +        server ​ static ​ 192.168.0.27:​8080 ​      check
 +
 +backend backend_archiva.koov.net
 +        #redirect scheme https code 301 if !{ ssl_fc }
 +        server ​ static ​ 192.168.0.27:​8180 ​      check
 +
 +backend backend_allthatlinux.com
 +        redirect scheme https code 301 if !{ ssl_fc }
 +        server ​ static ​ 192.168.0.21:​80 ​        check
 +
 +backend backend_talk.koov.net
 +        server ​ static ​ 192.168.0.28:​80 ​        check
 +
 +....
 +</​code>​
 +</​WRAP>​
  
  • haproxy_ssl_설정.txt
  • 마지막으로 수정됨: 2019/07/05 15:24
  • 저자 koov