Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations derfloh on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Server SSL certificate and sub-domains - Will This Work?

Status
Not open for further replies.

wlwoman

Technical User
Jul 8, 2001
133
US
The facts:

*Apache server w/SSL set up and working on domain1.com
*RedHat Linux 7.3
*Multiple virtual hosts w/DNS pointing through Zone Edit

The plan:
*Convert a single virtual host to sub-domain of domain1.com (remove vhost container and move directories inside the /var/ directory of domain1.com so that domain2.com's document root becomes /var/
*Reconfigure Zone Edit to forward domain2.com to domain1.com (e.g. forward to
*Use cloaking to make appear to be
*Use the same site certificate for domain2 that's already set up on domain1

**********************************************

I've used domain forwarding w/cloaking on non-secure sites but have a customer site I would like to secure.

If my ISP offered multiple IP's I would just buy them, but I don't have that option (nor does any other provider in the area for a price that I would care to pay).

Will this work or are there any other options? I know there are many posts related to SSL in this forum but I have not been able to find an answer that will work for me.

It would seem that I could buy my own subnet of IP's and somehow alias them into the existing setup but then again, a lot of things I think should work don't!

Any and all suggestions would be greatly appreciated!!
 
I'd take it to a gas station and have a mechanic look at it :)
 
The mechanic looked it over and said I was close but no cigar. Now....what about using internal IP's for vhosts? How to set up routing that will actually work?

i.e.:
ifconfig eth0:0 192.168.0.10 netmask 255.255.255.0
ifconfig eth0:1 192.168.0.11 netmask 255.255.255.0
(etc.)

I configured the /etc/hosts file to match i.e.:

192.168.0.10 192.168.0.11
Of course it doesn't work but the question is "Can it work?"

I can secure using a top/bottom 2-frame setup; I already tried that and it works fine. I could just move all the files that require security inside the secured directory. Never one to do things the easy way, I still want to do something a little cleaner.

I've been slogging my way through BIND documentation and a lot of other reading material without much progress.

Has anyone done the virtual host/virtual IP/virtual interface successfully?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top