セ腊承秎SSL硈钡翴.
莱ノUSB KEY单筿谍よΑ祅魁ㄏノ秎筿秎ン╰参.
秈╰参 "秎ン矪瞶竟" - "ネΘㄏノ谍祅嘲狝叭竟谍" 琩谍ビ叫よΑ, 秈︽皌竚˙艼:
1. 狦琌材よCA诀篶帽祇狝叭竟谍,ぃ琌蹦ノ材贺谍ビ叫よΑτ琌钡莉眔狝叭竟.p12,pfx盞巴,叫р狝叭竟谍㏑resin.p12, 琵CA诀篶砞竚玂臔盞絏test, /ymailserver/apps/ymailserver/var/mail/inboxes/smime/resin/key/resin.p12 盢CA诀篶┮ΤCA谍渺い┮ΤCA谍/ymailserver/apps/ymailserver/var/mail/inboxes/smime/resin/trusted 秈╰参"秎ン矪瞶竟" "ネΘㄏノ谍祅嘲狝叭竟谍" 材贺よΑ矪瞶祘, 祘耞resin.p12琌, 狦碞ノ材よ帽祇狝叭竟谍皌竚SSL, 狦ぃ碞ㄏノ╰参Τ/ymailserver/apps/ymailserver/var/mail/inboxes/smime/STDSmimeCa.p12帽祇
2. 材贺谍ビ叫よΑ莉眔狝叭竟谍.
3. 笲︽材贺よΑ┪材贺よΑ矪瞶祘,/ymailserver/apps/ymailserver/var/mail/inboxes/smime/resin/ ヘ魁い穦ネΘ癸莱狝叭竟SSL翴谍ゅン: 狝叭竟.p12 の cacerts獺ヴゅン.
4. 確/ymailserver/resin /ymailserver/resinssl
5. 埃/ymailserver/resinssl/conf/resin.conf ㏑/ymailserver/resinssl/conf/resinssl.conf /ymailserver/resinssl/conf/resin.conf, э /ymailserver/resinssl/conf/resin.confいず甧 狝叭竟.p12
<http port='443'> <ssl>true</ssl> <key-store-type>pkcs12</key-store-type> <key-store-file>keys/localhost.p12</key-store-file> <key-store-password>test</key-store-password> <authenticate-client>true</authenticate-client> </http>
LINUX/UNIX╰参: э/ymailserver/resinssl/bin/httpd.sh JAVA_HOME=/var/ymailserver/jdk эΘ JAVA_HOME=/var/ymailserver/jdkssl RESIN_HOME=/var/ymailserver/resin эΘ RESIN_HOME=/var/ymailserver/resinssl
6. 確/ymailserver/jdk /ymailserver/jdkssl 7. 確/ymailserver/jdkssl/jre/jce.jar /ymailserver/jdkssl/jre/lib/jce.jar 8. э/ymailserver/jdkssl/jre/lib/security/java.security い security.provider.1=sun.security.provider.Sun security.provider.2=net.yiii.security.provider.STD security.provider.3=net.yiii.security.keymanage.keystore.STD security.provider.4=net.yiii.security.x509.STD security.provider.5=com.sun.net.ssl.internal.ssl.Provider security.provider.6=com.sun.rsajca.Provider security.provider.7=com.sun.crypto.provider.SunJCE security.provider.8=sun.security.jgss.SunProvider эΘ: security.provider.1=sun.security.provider.Sun #security.provider.2=net.yiii.security.provider.STD #security.provider.3=net.yiii.security.keymanage.keystore.STD #security.provider.4=net.yiii.security.x509.STD security.provider.2=com.sun.net.ssl.internal.ssl.Provider security.provider.3=com.sun.rsajca.Provider security.provider.4=com.sun.crypto.provider.SunJCE security.provider.5=sun.security.jgss.SunProvider
9. ミヘ魁:/ymailserver/resinssl/keys, 確/ymailserver/apps/ymailserver/var/mail/inboxes/smime/resin/狝叭竟.p12 /ymailserver/resinssl/keys, 滦籠 /ymailserver/apps/ymailserver/var/mail/inboxes/smime/resin/cacerts/ymailserver/jdkssl/jre/security/cacerts
10. э/ymailserver/resin/conf/resin.conf い <http port='80'/> эΘ
<http port='80'/> <srun host='127.0.0.1' port='6802'/>
э/ymailserver/resinssl/conf/resin.conf:
<http port='80' host='127.0.0.1'/> эΘ: <!--<http port='80' host='127.0.0.1'/>-->
11. WINDOWS╰参盢resinssl杆秈狝叭: /ymailserver/resinssl/bin/httpd -java_home "/ymailserver/jdkssl" -Xms64m -Xmx64m -install-as resinssl LINUX╰参rc.localい /var/ymailserver/resinssl/bin/httpd.sh start &
13. э/ymailserver/webmail/app/defaultbig5.jsp 絋玂Τ︽, ⊿Τ碞:
if(request.isSecure()){ response.sendRedirect("defaultsslbig5.jsp"); return; }
14. 币秎狝叭
15. 帽祇ノめ谍ゲ斗肈璶琌ノめ秎ン睝礚э碞ㄏノヘ玡谍祅嘲, 玥狝叭竟恨瞶ゲ斗︑э defaultsslbig5.jsp 眖㎝帽祇诀篶坝谍Αい莉眔ノめ秎ン, ┪ㄏノ秎ノめ祅魁谍籔ノめ秎ン琈甮皌竚ㄓ龟瞷硄筁祅魁谍莉ノめ祅嘲秎ン.
猔種WINDOWS╰参いさ秎ㄤ龟琌WINDOWS狝叭恨瞶柑"resinssl"狝叭,狝叭: 1) Mysql 2) Resin Web Server 3) STD YMailserver email service 4) resinssl
硂妓ΤㄏノUSB KEY┪IE柑杆ノめ筿谍ノめ砐拜: https://狝叭竟, 翴.
|