]> git.ipfire.org Git - ipfire-2.x.git/blame - config/httpd/httpd.conf
Port 445 -> 444 gewechselt und XTAccess-Regeln ausgeschaltet.
[ipfire-2.x.git] / config / httpd / httpd.conf
CommitLineData
35f994e9
MT
1##\r
2## httpd.conf -- Apache HTTP server configuration file\r
3##\r
4## $Id: httpd.conf,v 1.15.2.7 2005/04/16 11:40:15 rkerr Exp $\r
5##\r
6ServerType standalone\r
7ServerRoot /etc/httpd\r
8\r
9LockFile /var/lock/httpd.lock\r
10PidFile /var/run/httpd.pid\r
11ScoreBoardFile /var/run/httpd.scoreboard\r
12Timeout 900\r
13KeepAlive On\r
14MaxKeepAliveRequests 100\r
15KeepAliveTimeout 15\r
16MinSpareServers 1\r
17MaxSpareServers 2\r
18StartServers 2\r
19MaxClients 10\r
20MaxRequestsPerChild 100\r
21Port 81\r
22Listen 81\r
23Listen 444\r
24User nobody\r
25Group nobody\r
26ServerAdmin root@localhost\r
27ServerTokens Prod\r
28DocumentRoot /home/httpd/html\r
29# Limit track/trace requests\r
30RewriteEngine on\r
31RewriteCond %{REQUEST_METHOD} ^(TRACE|TRACK|OPTIONS)\r
32RewriteRule .* - [F]\r
33\r
34<Directory />\r
35 Options None\r
36 AllowOverride None\r
37</Directory>\r
38<Directory /home/httpd/html>\r
39 Options ExecCGI\r
40 AllowOverride None\r
41 Order allow,deny\r
42 Allow from all\r
43</Directory>\r
44<DirectoryMatch "/home/httpd/html/(graphs|sgraph)">\r
45 AuthName "Restricted"\r
46 AuthType Basic\r
47 AuthUserFile CONFIG_ROOT/auth/users\r
48 require user admin\r
49</DirectoryMatch>\r
50ScriptAlias /cgi-bin/ /home/httpd/cgi-bin/\r
51<Directory /home/httpd/cgi-bin>\r
52 AllowOverride None\r
53 Options None\r
54 AuthName "Restricted"\r
55 AuthType Basic\r
56 AuthUserFile CONFIG_ROOT/auth/users\r
57 Require user admin\r
58 <Files index.cgi>\r
59 Satisfy Any\r
60 Allow from All\r
61 </Files>\r
62 <Files credits.cgi>\r
63 Satisfy Any\r
64 Allow from All\r
65 </Files>\r
66 <Files dial.cgi>\r
67 Require user admin dial\r
68 </Files>\r
69</Directory>\r
70<IfModule mod_dir.c>\r
71 DirectoryIndex index.html index.htm index.shtml index.cgi\r
72</IfModule>\r
73AccessFileName .htaccess\r
74<Files ~ "^\.ht">\r
75 Order allow,deny\r
76 Deny from all\r
77</Files>\r
78<IfModule mod_mime.c>\r
79 TypesConfig /etc/mime.types\r
80</IfModule>\r
81DefaultType text/plain\r
82\r
83HostnameLookups Off\r
84ErrorLog /var/log/httpd/error_log\r
85LogLevel warn\r
86LogFormat "%h %l %u %t \"%r\" %>s %b" common\r
87CustomLog /var/log/httpd/access_log common\r
88ServerSignature Off\r
89AddHandler cgi-script .cgi\r
90<IfModule mod_setenvif.c>\r
91 BrowserMatch "Mozilla/2" nokeepalive\r
92 BrowserMatch "MSIE 4\.0b2;" nokeepalive downgrade-1.0 force-response-1.0\r
93 BrowserMatch "RealPlayer 4\.0" force-response-1.0\r
94 BrowserMatch "Java/1\.0" force-response-1.0\r
95 BrowserMatch "JDK/1\.0" force-response-1.0\r
96</IfModule>\r
97\r
98###\r
99### SSL Configuration\r
100###\r
101AddType application/x-x509-ca-cert .crt\r
102AddType application/x-pkcs7-crl .crl\r
103\r
104SSLPassPhraseDialog builtin\r
105SSLSessionCache dbm:/var/log/httpd/ssl_scache\r
106SSLSessionCacheTimeout 900\r
107SSLMutex file:/var/log/httpd/ssl_mutex\r
108SSLRandomSeed startup builtin\r
109SSLRandomSeed connect builtin\r
110SSLLog /var/log/httpd/ssl_engine_log\r
111SSLLogLevel info\r
112\r
113<VirtualHost _default_:444>\r
114 RewriteEngine on\r
115 RewriteCond %{REQUEST_METHOD} ^(TRACE|TRACK|OPTIONS)\r
116 RewriteRule .* - [F]\r
117 DocumentRoot /home/httpd/html\r
118 ServerAdmin root@localhost\r
119 ErrorLog /var/log/httpd/error_log\r
120 TransferLog /var/log/httpd/access_log\r
121 SSLEngine on\r
122 SSLProtocol all -SSLv2\r
123 SSLCipherSuite ALL:!ADH:!EXPORT56:!eNULL:!SSLv2:RC4+RSA:+HIGH:+MEDIUM:+LOW:+EXP\r
124 SSLCertificateFile /etc/httpd/server.crt\r
125 SSLCertificateKeyFile /etc/httpd/server.key\r
126 <Files ~ "\.(cgi|shtml?)$">\r
127 SSLOptions +StdEnvVars\r
128 </Files>\r
129 <Directory /home/httpd/cgi-bin>\r
130 SSLOptions +StdEnvVars\r
131 </Directory>\r
132 SetEnv HOME /home/nobody\r
133 SetEnvIf User-Agent ".*MSIE.*" \\r
134 nokeepalive ssl-unclean-shutdown \\r
135 downgrade-1.0 force-response-1.0\r
136 CustomLog /var/log/httpd/ssl_request_log \\r
137 "%t %h %{SSL_PROTOCOL}x %{SSL_CIPHER}x \"%r\" %b"\r
138</VirtualHost>\r
139\r
140<Directory /home/httpd/html/backup>\r
141 Options None\r
142 AllowOverride None\r
143 AuthName "Restricted"\r
144 AuthType Basic\r
145 AuthUserFile /var/ipcop/auth/users\r
146 require user admin\r
147</Directory>\r
148\r
149include /etc/httpd/conf/hostname.conf\r