Welcome to Global Trust 256 bit SSL Security Site.

  現在位置 : 技術資源 > 知識庫FAQ > SSL 憑證 > Thawte > 安裝憑證 > Roxen

技術 / 資訊搜尋 


Roxen


Configuring Roxen Challenger

When you have received your certificate, you have to tell Roxen to use it.
Copy the secret key and the certificate into the roxen tree, for example as roxen/server/certificates/my_cert.cert and roxen/server/certificates/my_key.rsa.
Still, the secret key must be protected. You probably want to run roxen as root, and have the secret key file readable by root only.
There are two Roxen modules for SSL. If you have working threads, use the one called ssleay, otherwise the one called ssl. Choose which one to run in the configuration interface under Server Variables -> Listen Ports.
Both protocol modules are configured the same way. You have to enter the file names of your secret key and your certificate, relative to roxen/server, like this:

cert-file certificates/my_cert.cert
key-file certificates/my_key.rsa

At last, to maintain security at your server, beware of security holes that may expose your secret key to an attacker. Don't run any unnecessary services, and install all security patches from your OS vendor.
As for your web server, be very careful when you decide which modules you install. Do not allow untrusted people to use pike scripts or the -tag. Avoid CGI-programs if possible, as it is too easy to introduce security holes there.



技術支援系統登入 忘記密碼?
帳號
密碼

 

主要問題大類
文件區 (3)
SSL 憑證 (0)
CodeSign程式碼簽章 (0)
Email憑證 (24)
隱私條款 法律聲明 安全說明連絡寰宇