• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Mod Security (Reverse proxy with SSL)

Scheduled Pinned Locked Moved pfSense Packages
3 Posts 3 Posters 3.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • C
    cosmo
    last edited by Apr 26, 2012, 5:57 PM Apr 26, 2012, 5:55 PM

    Hello All,
    I have Mod_Security working fine with HTTP(80)
    But i need use mod_security with HTTPS(443) with Godaddy SSL.
    I have the 3 files in /usr/local/apache22/etc/ (I have created this path):
    Certificate File: www.mydomain.com.crt
    Certificate Key File: www.mydomain.com.pem
    Certificate Chain File: gb_bundle.crt

    i setup new SiteProxy with these data:
    Site Name: MyDomain SSL
    Webmaster: email@domain.com
    IP Address: xxx.xxx.xxx.xxx
    Protocol: HTTPS
    Port: 443
    Certificate File: www.mydomain.com.crt
    Certificate Key File: www.mydomain.com.pem
    Certificate Chain File: gb_bundle.crt
    Preserver Proxy Hostname: Uncheck
    Primary Site Name: www.mydomain.com
    WebServer backend URL: 192.168.0.1

    But its not work. What i need do?
    *** If i add a Port Forward (NAT) to internal server on https port, its working fine. But i really need certificate.

    Thanks!

    1 Reply Last reply Reply Quote 0
    • M
      marcelloc
      last edited by Apr 30, 2012, 4:17 AM

      cosmo,

      did you tried Certificate File and Certificate Key File with full path instead of just .crt and .pem filename?

      Treinamentos de Elite: http://sys-squad.com

      Help a community developer! ;D

      1 Reply Last reply Reply Quote 0
      • H
        haasje30
        last edited by Sep 6, 2012, 7:14 AM

        Hello,

        I got it working. It seems it's not possible to do reverse proxy on 443 and 80. I had to remove port 80 to get it working.

        On proxy server settings is set port to bind to 443.
        I removed  the port 80 site proxy (with a config for port 80 and 443 it didn't work).

        You have to enter the file name only for certificate files (with full path it will search for /usr/local/apache22/etc/usr/local/apache22/etc/cert_file according to the log)
        So i think there is a typo in the path they given under the option. You have to put your certificate files in /usr/local/etc/apache22/ instead of /usr/local/apache22/etc/

        When you add full path name apache will not run and there is no proxy at all.

        You must not add a port forward in the NAT

        Greetings.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received