{"id":574,"date":"2018-11-11T04:34:45","date_gmt":"2018-11-10T19:34:45","guid":{"rendered":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/?p=574"},"modified":"2022-05-21T23:47:09","modified_gmt":"2022-05-21T14:47:09","slug":"apache%e3%81%aessl%e8%a8%ad%e5%ae%9a%e3%82%92%e8%a6%8b%e7%9b%b4%e3%81%97%e3%81%a6%e3%82%bb%e3%82%ad%e3%83%a5%e3%83%aa%e3%83%86%e3%82%a3%e3%83%ac%e3%83%99%e3%83%ab%e3%82%92%e5%90%91%e4%b8%8a%e3%81%95","status":"publish","type":"post","link":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/archives\/574","title":{"rendered":"Apache\u306eSSL\u8a2d\u5b9a\u3092\u898b\u76f4\u3057\u3066\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30ec\u30d9\u30eb\u3092\u5411\u4e0a\u3055\u305b\u308b"},"content":{"rendered":"\n<p>OS: Ubuntu Server 18.04.1 LTS<br>Apache 2.4.35<br>OpenSSL 1.1.0g 2 Nov 2017<\/p>\n\n\n\n<p><a href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/archives\/571\">Apache\u3067SSL\u30b5\u30fc\u30d0\u8a3c\u660e\u66f8\u306e\u8a2d\u5b9a<\/a>\u3092\u3053\u306a\u3057\u305f\u3051\u308c\u3069\u3082\u6b86\u3069\u30c7\u30d5\u30a9\u30eb\u30c8\u306e\u5118\u306b\u4efb\u305b\u3066\u3044\u305f\u304b\u3089Qualys\u306eSSL Server Test\u3092\u5b9f\u65bd\u3059\u308b\u3068\u3053\u3046\u3044\u3046\u6709\u69d8\u3067\u3042\u308b\u3002<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter is-resized\"><a href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1.png\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-1024x613.png\" alt=\"\" class=\"wp-image-575\" width=\"512\" height=\"307\" srcset=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-1024x613.png 1024w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-300x179.png 300w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-768x460.png 768w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1.png 1078w\" sizes=\"auto, (max-width: 512px) 100vw, 512px\" \/><\/a><figcaption>\u56f31. Qualys SSL Server Test\u306e\u7dcf\u5408\u8a55\u4fa1<\/figcaption><\/figure><\/div>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter is-resized\"><a href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-1.png\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-1.png\" alt=\"\" class=\"wp-image-578\" width=\"468\" height=\"218\" srcset=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-1.png 624w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test1-1-300x140.png 300w\" sizes=\"auto, (max-width: 468px) 100vw, 468px\" \/><\/a><figcaption>\u56f32. Qualys SSL Server Test\u306e\u8a73\u7d30\u306e\u4e00\u90e8<\/figcaption><\/figure><\/div>\n\n\n\n<p>\u524d\u65b9\u79d8\u533f\u6027\u306e\u30b5\u30dd\u30fc\u30c8\u304c\u7121\u3044\u70ba\u306bB\u5224\u5b9a\u3068\u3044\u3046\u6b21\u7b2c\u3067\u3042\u308b\u3002RSA\u306b\u3088\u308b\u9375\u4ea4\u63db\u306f\u524d\u65b9\u79d8\u533f\u6027\u304c\u7121\u3044\u304b\u3089<a href=\"https:\/\/blog.qualys.com\/ssllabs\/2018\/02\/02\/forward-secrecy-authenticated-encryption-and-robot-grading-update\">\u305d\u308c\u304c\u7406\u7531\u3067B<\/a>\u3068\u3044\u3046\u3053\u3068\u3067\u3042\u3063\u305f\u3002ECDHE(\u6955\u5186\u66f2\u7dda\u30c7\u30a3\u30d5\u30a3\u30fc\u30fb\u30d8\u30eb\u30de\u30f3\u9375\u5171\u6709)\u3092\u6d3b\u7528\u306a\u3055\u3044\u3068\u3044\u3046\u65e8\u3001\u8a18\u8f09\u304c\u3042\u3063\u305f\u3051\u308c\u3069\u3082\u5185\u5bb9\u304c\u9ad8\u5ea6\u306b\u904e\u304e\u3066\u98f2\u307f\u8fbc\u3081\u308b\u7bc4\u7587\u3092\u9065\u304b\u306b\u8d85\u3048\u3066\u3090\u308b\u3002<\/p>\n\n\n\n<p>\u3053\u3046\u306a\u308b\u3068Apache\u306e\u8a2d\u5b9a\u3092\u5982\u4f55\u69d8\u306b\u624b\u3092\u3064\u3051\u308c\u3070\u3088\u3044\u304b\u3001\u305c\u3093\u305c\u3093\u60f3\u50cf\u304c\u53ca\u3070\u306a\u3044\u3002\u3082\u5c11\u3057\u624b\u8efd\u306b\u4f55\u3068\u304b\u3067\u304d\u306a\u3044\u304b\u8abf\u3079\u308b\u3068<a href=\"https:\/\/mozilla.github.io\/server-side-tls\/ssl-config-generator\/\">Mozilla SSL Configuration Generator<\/a>\u3068\u3044\u3046\u5927\u5909\u5fc3\u5f37\u3044\u30b5\u30a4\u30c8\u3092mozilla\u304c\u7528\u610f\u3057\u3066\u5449\u308c\u3066\u3044\u305f\u3002<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter is-resized\"><a href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test2.png\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test2.png\" alt=\"\" class=\"wp-image-576\" width=\"565\" height=\"289\" srcset=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test2.png 753w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test2-300x153.png 300w\" sizes=\"auto, (max-width: 565px) 100vw, 565px\" \/><\/a><figcaption>\u56f33. <a href=\"https:\/\/mozilla.github.io\/server-side-tls\/ssl-config-generator\/\">Mozilla SSL Configuration Generator<\/a><\/figcaption><\/figure><\/div>\n\n\n\n<p>Web\u30b5\u30fc\u30d0\u306e\u7a2e\u985e\u3068\u30d0\u30fc\u30b8\u30e7\u30f3\u3001OpenSSL\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u3092\u9078\u629e\u3059\u308b\u3060\u3051\u3067\u8a2d\u5b9a\u3092\u30d1\u30c3\u3068\u793a\u3057\u3066\u304f\u308c\u308b\u3002\u307e\u3053\u3068\u306b\u6709\u308a\u96e3\u3044\u4ed5\u7d44\u307f\u3067\u3042\u308b\u3002\u307e\u305fModern\u3001Intermediate\u3001Old\u306e\u9078\u629e\u80a2\u3067\u3001\u53e4\u3044\u30d6\u30e9\u30a6\u30b6\u306e\u30b5\u30dd\u30fc\u30c8\u3092\u3069\u306e\u7a0b\u5ea6\u78ba\u4fdd\u3059\u308b\u304b\u304a\u304a\u307e\u304b\u306b\u6c7a\u5b9a\u3067\u304d\u308b\u3002<\/p>\n\n\n\n<p>Old\u306f\u968f\u5206\u6614\u306e\u30d6\u30e9\u30a6\u30b6\u307e\u3067\u5bfe\u5fdc\u3059\u308b\u4ee3\u308f\u308a\u306b\u8106\u5f31\u6027\u304c\u78ba\u8a8d\u3055\u308c\u3066\u3044\u308bSSLv3\u3092\u4f7f\u3046\u3057\u3001Modern\u306f\u4eca\u306e\u6240\u5b89\u5fc3\u3067\u304d\u305d\u3046\u306aSSL\u30d7\u30ed\u30c8\u30b3\u30eb\u3068\u6697\u53f7\u30b9\u30a4\u30fc\u30c8\u3092\u5099\u3048\u308b\u4ee3\u308f\u308a\u306b\u53e4\u3044\u30d6\u30e9\u30a6\u30b6\u3092\u5207\u308a\u6368\u3066\u3066\u3086\u304f\u65b9\u91dd\u3068\u306a\u308b\u3088\u3046\u3067\u3042\u308b\u3002<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">$ openssl version\nOpenSSL 1.1.0g  2 Nov 2017\n\n$ \/usr\/local\/apache2\/bin\/httpd -v\nServer version: Apache\/2.4.35 (Unix)\nServer built:   Oct  3 2018 13:34:46<\/pre>\n\n\n\n<p>\u8a66\u307f\u306bApache\u3068Openssl\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u3092\u63a2\u308a\u3001\u3053\u308c\u3092\u3082\u3068\u306b\u8a2d\u5b9a\u3092\u8868\u793a\u3055\u305b\u305f\u3002\u8a2d\u5b9a\u3092\u3046\u307e\u3044\u5177\u5408\u306bhttp-ssl.conf\u3078\u66f8\u304d\u8fbc\u3093\u3060\u3089<code>apachectl configtest<\/code>\u3067\u6587\u6cd5\u30c1\u30a7\u30c3\u30af\u3092\u3057\u3001\u554f\u984c\u306a\u3051\u308c\u3070Apache\u3092\u518d\u8d77\u52d5\u3059\u308b\u3002\u305d\u306e\u3042\u3068\u3001SSL Server Test\u306e\u30b5\u30a4\u30c8\u3078\u30a2\u30af\u30bb\u30b9\u3057\u3066Clear cache\u3092\u30af\u30ea\u30c3\u30af\u3057\u3066\u304b\u3089\u3001\u518d\u5ea6\u691c\u67fb\u3092\u57f7\u308a\u884c\u3046\u3068\u5927\u5909\u3088\u3055\u305d\u3046\u306a\u8a55\u4fa1\u3067\u3042\u3063\u305f\u3002<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter is-resized\"><a href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-0.png\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-0.png\" alt=\"\" class=\"wp-image-580\" width=\"527\" height=\"182\" srcset=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-0.png 702w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-0-300x104.png 300w\" sizes=\"auto, (max-width: 527px) 100vw, 527px\" \/><\/a><figcaption>\u56f34. Clear cache\u3067\u524d\u56de\u691c\u67fb\u3057\u305f\u30ad\u30e3\u30c3\u30b7\u30e5\u3092\u524a\u9664<\/figcaption><\/figure><\/div>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter is-resized\"><a href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3.png\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-1024x606.png\" alt=\"\" class=\"wp-image-577\" width=\"512\" height=\"303\" srcset=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-1024x606.png 1024w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-300x178.png 300w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3-768x454.png 768w, https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-content\/uploads\/2018\/11\/apache-ssl-test3.png 1090w\" sizes=\"auto, (max-width: 512px) 100vw, 512px\" \/><\/a><figcaption>\u56f35. \u7dcf\u5408\u8a55\u4fa1A+\u3092\u7372\u5f97\u3057\u305f\u69d8\u5b50<\/figcaption><\/figure><\/div>\n\n\n\n<h3 class=\"link\">\u53c2\u8003:<\/h3>\n<ul>\n <li><a href=\"https:\/\/www.ssllabs.com\/ssltest\/\">SSL Server Test (Powered by Qualys SSL Labs)<\/a><\/li>\n <li><a href=\"https:\/\/mozilla.github.io\/server-side-tls\/ssl-config-generator\/\">Mozilla SSL Configuration Generator<\/a><\/li>\n <li><a href=\"https:\/\/wiki.mozilla.org\/Security\/Server_Side_TLS\">Security\/Server Side TLS<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>OS: Ubuntu Server 18.04.1 LTSApache 2.4.35OpenSSL 1.1.0g 2 Nov 2017 Apache\u3067SSL\u30b5\u30fc\u30d0\u8a3c\u660e\u66f8\u306e\u8a2d\u5b9a\u3092\u3053\u306a\u3057\u305f\u3051\u308c\u3069\u3082\u6b86\u3069\u30c7\u30d5\u30a9\u30eb\u30c8\u306e\u5118\u306b\u4efb\u305b\u3066\u3044\u305f\u304b\u3089Qualys\u306eSSL Server Test\u3092\u5b9f\u65bd\u3059\u308b\u3068\u3053\u3046\u3044\u3046\u6709\u69d8\u3067\u3042\u308b\u3002 \u524d\u65b9\u79d8\u533f\u6027\u306e\u30b5\u30dd\u30fc\u30c8\u304c\u7121\u3044\u70ba\u306bB\u5224\u5b9a\u3068\u3044\u3046\u6b21\u7b2c\u3067\u3042\u308b\u3002RSA\u306b\u3088\u308b\u9375\u4ea4\u63db\u306f\u524d\u65b9\u79d8\u533f\u6027\u304c\u7121\u3044\u304b\u3089\u305d &#8230; <a title=\"Apache\u306eSSL\u8a2d\u5b9a\u3092\u898b\u76f4\u3057\u3066\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30ec\u30d9\u30eb\u3092\u5411\u4e0a\u3055\u305b\u308b\" class=\"read-more\" href=\"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/archives\/574\" aria-label=\"Apache\u306eSSL\u8a2d\u5b9a\u3092\u898b\u76f4\u3057\u3066\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30ec\u30d9\u30eb\u3092\u5411\u4e0a\u3055\u305b\u308b \u306b\u3064\u3044\u3066\u3055\u3089\u306b\u8aad\u3080\">\u7d9a\u304d\u3092\u8aad\u3080<\/a><\/p>\n","protected":false},"author":1,"featured_media":1178,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[162],"tags":[187,192],"class_list":["post-574","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-162","tag-apache","tag-192"],"views":2421,"_links":{"self":[{"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/posts\/574","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/comments?post=574"}],"version-history":[{"count":0,"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/posts\/574\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/media\/1178"}],"wp:attachment":[{"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/media?parent=574"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/categories?post=574"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www7390uo.sakura.ne.jp\/wordpress\/wp-json\/wp\/v2\/tags?post=574"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}