# 202007 ## apache2で自己署名証明書SSL Buttle ``` # 対話式で証明書のデータをいれる.common nameはちゃんといれたほうがいい.(IP or FQDN) $ sudo openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout /etc/ssl/private/apache-selfsigned.key -out /etc/ssl/certs/apache-selfsigned.crt #/etc/apache2/sites-available/default-ssl.conf #################################################################### ServerAdmin Admin DocumentRoot /var/www/html ErrorLog ${APACHE_LOG_DIR}/error.log CustomLog ${APACHE_LOG_DIR}/access.log combined SSLEngine on SSLCertificateFile /etc/ssl/certs/apache-selfsigned.crt SSLCertificateKeyFile /etc/ssl/private/apache-selfsigned.key SSLOptions +StdEnvVars SSLOptions +StdEnvVars #################################################################### $ cat /etc/apache2/conf-available/ssl-params.conf SSLCipherSuite EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH SSLProtocol All -SSLv2 -SSLv3 -TLSv1 -TLSv1.1 SSLHonorCipherOrder On # Requires Apache >= 2.4 SSLCompression off SSLUseStapling on SSLStaplingCache "shmcb:logs/stapling-cache(150000)" # Requires Apache >= 2.4.11 SSLSessionTickets Off # module import $ sudo a2enmod ssl $ sudo a2ensite default-ssl.conf $ sudo a2enconf ssl-params.conf $ sudo systemctl restart apache2 ``` - References - [Ubuntu 18.04でApacheの自己署名SSL証明書を作成する方法](https://www.codeflow.site/ja/article/how-to-create-a-self-signed-ssl-certificate-for-apache-in-ubuntu-18-04) - [Apache/SSL自己証明書の作成とmod sslの設定 - maruko2 Note.](http://www.maruko2.com/mw/Apache/SSL%E8%87%AA%E5%B7%B1%E8%A8%BC%E6%98%8E%E6%9B%B8%E3%81%AE%E4%BD%9C%E6%88%90%E3%81%A8mod_ssl%E3%81%AE%E8%A8%AD%E5%AE%9A) ## べんり ``` $ cat hoge.list | awk -F/ '{print $1}' | while read line; do echo "$line,$(whois $line | grep -i netname | awk '{print $2}' | tr '\n' ' ' | awk '{print $NF}')"; done ``` ## [Ostinato Packet Generator](https://ostinato.org/) ##[SSH/SCP のログイン自動化に sshpass が便利すぎた - CUBE SUGAR CONTAINER](https://blog.amedama.jp/entry/2017/06/03/131852) ## [RFC 7871 - Client Subnet in DNS Queries](https://tools.ietf.org/html/rfc7871) ## todo - signal tower - api formatみなおし.きばんfix - 点滅パターンとか - zab action - signal towerれんけい - ups zab監視  - network ups tools - udevあたり - 1デバイスで2UPS以上とれるように. ## [Pythonでエラー箇所を上書きしてしまわないようにする - Qiita](https://qiita.com/itkr/items/d2c2e6992a73d45785ba) ## [ClamavNet](https://www.clamav.net/) ## [WebSequenceDiagrams - Draw sequence diagrams online in seconds](https://www.websequencediagrams.com/) ## [GitHub - k1LoW/tbls: tbls is a CI-Friendly tool for document a database, written in Go.](https://github.com/k1LoW/tbls) ## [Diagrams](https://www.diagrams.net/) ## [Hotjar Documentation](https://help.hotjar.com/hc/en-us)