LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 07-03-2003, 10:21 AM   #1
yapp
Member
 
Registered: Apr 2003
Location: Netherlands
Distribution: SuSE (before: Gentoo, Slackware)
Posts: 613

Rep: Reputation: 30
Apache doesn't listen to 443 (https)


Hi there,

I'm trying to run a https website (for personal usage, that's why I want it to me https) Apache is working for normal http traffic, but I haven't got the https server working. I did change a little in /etc/apache/mod_ssl.conf, but nothing special. At the end of /etc/apache/httpd.conf, I uncommented the Include ...mod_ssl.conf line.

I've read a lot about the certificates, but I don't understand much of it. Apache is pre-configured at my system, (slackware 9) What do I need to do to get SSL running?
 
Old 07-03-2003, 12:26 PM   #2
cyberskye
Member
 
Registered: Feb 2003
Location: The City by the Bay
Posts: 116

Rep: Reputation: 15
what are you using to start the server? Which command exactly? have you tried /path/to/apache/apachectl startssl ?

Be specific about any errors you receive.
 
Old 07-03-2003, 05:21 PM   #3
yapp
Member
 
Registered: Apr 2003
Location: Netherlands
Distribution: SuSE (before: Gentoo, Slackware)
Posts: 613

Original Poster
Rep: Reputation: 30
startssl gave me this
Code:
root@hal9000 diederik # /usr/sbin/apachectl startssl
[Fri Jul  4 00:18:49 2003] [warn] module mod_ssl.c is already added, skipping
/usr/sbin/apachectl startssl: httpd could not be started
/var/log/apache/ssl_engine_log:
Code:
[04/Jul/2003 00:18:49 19716] [info]  Server: Apache/1.3.27, Interface: mod_ssl/2.8.12, Library: OpenSSL/0.9.7a
[04/Jul/2003 00:18:49 19716] [info]  Init: 1st startup round (still not detached)
[04/Jul/2003 00:18:49 19716] [info]  Init: Initializing OpenSSL library
[04/Jul/2003 00:18:49 19716] [info]  Init: Loading certificate & private key of SSL-aware server *****:443
[04/Jul/2003 00:18:49 19716] [error] Init: Unable to read server certificate from file /etc/apache/ssl.crt/server.crt (OpenSSL library error follows)
[04/Jul/2003 00:18:49 19716] [error] OpenSSL: error:0D06B08E:asn1 encoding routines:ASN1_d2i_bio:not enough data
I've been playing with SSL certificates, but I'm confused by it. (ie. what needs to be done, and what all these openssl command actually do) This definitely shows that I don't got that right.
 
Old 07-03-2003, 05:52 PM   #4
cyberskye
Member
 
Registered: Feb 2003
Location: The City by the Bay
Posts: 116

Rep: Reputation: 15
Seems like a cert problem - I'd say your pkey is too short, but errors are rarely that obvious Here is good info on how to roll your own cert. Probably be less time consuming than trying to figure out how yours was built. Skip down to the section on creating csr

http://slacksite.com/apache/certificate.html
 
Old 07-03-2003, 06:11 PM   #5
yapp
Member
 
Registered: Apr 2003
Location: Netherlands
Distribution: SuSE (before: Gentoo, Slackware)
Posts: 613

Original Poster
Rep: Reputation: 30
Whoo hoo.. it's working. My apache runs https. That site has been really helpfull to understand the process too.

If I may ask just one other thing: Right now I don't have a CA-signed certificate, but is that free?
 
Old 07-03-2003, 06:23 PM   #6
cyberskye
Member
 
Registered: Feb 2003
Location: The City by the Bay
Posts: 116

Rep: Reputation: 15
Quote:
If I may ask just one other thing: Right now I don't have a CA-signed certificate, but is that free?
Nope - thawte was cheaper than verisign last I checked. All CA's charge, it's their primary source of income and they are for-profit outfits. If it's just you for you and you set things up safely (tripwire, etc) you should be alright self-signed. Up to you, tho
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Apache Port 443 Verbal Kint Linux - Software 0 10-04-2005 03:07 AM
apache mod_ssl not using port 443 davidsrsb Slackware 8 06-07-2005 10:33 AM
turn off http port 80, keep https port 443 lothario Linux - Networking 6 02-11-2005 04:06 AM
Apache won't answer on Port 80, but will on 443 KevinJ Linux - Software 10 02-04-2003 08:10 PM
https/443: I scanned my server and came up with this and not sure what it means. ForumKid Linux - Security 1 02-05-2002 06:19 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 03:08 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration