Home Backend Development PHP Tutorial Set up external WWW and file server with Apache reverse proxy_PHP tutorial

Set up external WWW and file server with Apache reverse proxy_PHP tutorial

Jul 21, 2016 pm 04:08 PM
apache acting reverse and Access document server machine use of Introduction set up


Introduction: A machine uses a dedicated line to connect to the Internet as a firewall. There is a WWW server
(Redhat 6.1, Apache 1.3.9) on the internal network segment. It is hoped that this machine can provide a WWW server and apache
-based to the outside world. File services. For the outside world to publicly access the WWW server, or for foreign branches to download required files.
Advantages: The internal WWW server and file service are completely isolated from the outside world and are not directly connected to the outside. The Apache service running on the
firewall provides internal proxy access, which enhances security and at the same time
The Apache service running on the firewall uses name-based virtual host technology so that the
homepage on the firewall will not be accessed. It complies with the principle that as a firewall, the fewer services required to run, the more secure it is.

Implementation method: The Apache server (192.168.11.2) on the internal network segment stores the company's homepage for public access by internal
and external users, and sets the /home/ftp/pub directory as a file Storage area, use
http://download.yourdomain.com/pub/ to access.
Set up apache reverse proxy technology on the firewall, and the firewall will proxy access to the internal network segment.

Steps:
1. Apache server settings on the internal network segment

apache uses the default configuration. The main directory is /home/httpd/html, the host domain name is sun.yourdomain.com,
and the alias is www.yourdomain.com, and set srm.conf and add a line of alias definition as follows:
Alias ​​/pub /home/ ftp/pub/

And change the default application type definition as follows:
DefaultType application/octet-stream

Finally add an entry in /etc/httpd/conf/access.conf Definition

Options Indexes
AllowOverride AuthConfig
order allow,deny
allow from all

Note: Options Indexes allow if the index.html file cannot be found List directories/files.
AllowOverride AuthConfig allows basic username and password authentication.
In this case, you need to put .htaccess in the /home/ftp/pub directory with the following content:
-------
[root@shopu pub]# more .htaccess
AuthName Branch Office Public Software Download Area
AuthType Basic
AuthUserFile /etc/.usrpasswd
require valid-user
------
Then use #htpasswd -c /etc/ .usrpasswd user1
Create different external user names and passwords that allow access to file services under /pub.


2. Reverse proxy configuration on firewall:
Add the following lines to /etc/httpd/conf/httpd.conf

NameVirtualHost 1.2.3.4

# 1.2.3.4 is the permanent IP address on the Internet of the firewall’s external network card


servername www.yourdomain.com
errorlog /var/log/httpd/error_log
transferlog /var/ log/httpd/access_log
rewriteengine on
proxyrequests off
usecanonicalname off
rewriterule ^/(.*)$ http://192.168.11.2/$1 [P,L]


servername download.yourdomain.com
errorlog /var/log/httpd/download/error_log
transferlog /var/log/httpd/download/access_log
rewriteengine on
proxyrequests off
usecanonicalname off
rewriterule ^/(.*)$ http://192.168.11.2/$1 [P,L]


Note: Set the DNS on the firewall to download.yourdomain. comwww.yourdomain.com all points to the
external network card address of the firewall. www.yourdomain.com To find your company homepage, use
http://download.yourdomain.com/pub/...Participate in the fundraiser?/a>


You need to create the directory /var/log/httpd/download/ on the apache host in the internal network segment, otherwise
an error will occur. In addition, you can also set the attribute of /home/httpd/html/index.html on the firewall host to
750

www.bkjia.comtruehttp: //www.bkjia.com/PHPjc/314738.htmlTechArticleIntroduction: A machine uses a dedicated line to connect to the Internet as a firewall, and there is a WWW server (Redhat6) on the internal network segment .1, Apache1.3.9) I hope this machine can provide external WWW servers and...
Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

How to set the cgi directory in apache How to set the cgi directory in apache Apr 13, 2025 pm 01:18 PM

To set up a CGI directory in Apache, you need to perform the following steps: Create a CGI directory such as "cgi-bin", and grant Apache write permissions. Add the "ScriptAlias" directive block in the Apache configuration file to map the CGI directory to the "/cgi-bin" URL. Restart Apache.

What to do if the apache80 port is occupied What to do if the apache80 port is occupied Apr 13, 2025 pm 01:24 PM

When the Apache 80 port is occupied, the solution is as follows: find out the process that occupies the port and close it. Check the firewall settings to make sure Apache is not blocked. If the above method does not work, please reconfigure Apache to use a different port. Restart the Apache service.

How to connect to the database of apache How to connect to the database of apache Apr 13, 2025 pm 01:03 PM

Apache connects to a database requires the following steps: Install the database driver. Configure the web.xml file to create a connection pool. Create a JDBC data source and specify the connection settings. Use the JDBC API to access the database from Java code, including getting connections, creating statements, binding parameters, executing queries or updates, and processing results.

How to view your apache version How to view your apache version Apr 13, 2025 pm 01:15 PM

There are 3 ways to view the version on the Apache server: via the command line (apachectl -v or apache2ctl -v), check the server status page (http://<server IP or domain name>/server-status), or view the Apache configuration file (ServerVersion: Apache/<version number>).

How to view the apache version How to view the apache version Apr 13, 2025 pm 01:00 PM

How to view the Apache version? Start the Apache server: Use sudo service apache2 start to start the server. View version number: Use one of the following methods to view version: Command line: Run the apache2 -v command. Server Status Page: Access the default port of the Apache server (usually 80) in a web browser, and the version information is displayed at the bottom of the page.

How to configure zend for apache How to configure zend for apache Apr 13, 2025 pm 12:57 PM

How to configure Zend in Apache? The steps to configure Zend Framework in an Apache Web Server are as follows: Install Zend Framework and extract it into the Web Server directory. Create a .htaccess file. Create the Zend application directory and add the index.php file. Configure the Zend application (application.ini). Restart the Apache Web server.

How to delete more than server names of apache How to delete more than server names of apache Apr 13, 2025 pm 01:09 PM

To delete an extra ServerName directive from Apache, you can take the following steps: Identify and delete the extra ServerName directive. Restart Apache to make the changes take effect. Check the configuration file to verify changes. Test the server to make sure the problem is resolved.

How to solve the problem that apache cannot be started How to solve the problem that apache cannot be started Apr 13, 2025 pm 01:21 PM

Apache cannot start because the following reasons may be: Configuration file syntax error. Conflict with other application ports. Permissions issue. Out of memory. Process deadlock. Daemon failure. SELinux permissions issues. Firewall problem. Software conflict.

See all articles