diff options
| author | Nick Bebout <nb@lockbox01.phx2.fedoraproject.org> | 2013-08-20 00:53:10 +0000 |
|---|---|---|
| committer | Nick Bebout <nb@lockbox01.phx2.fedoraproject.org> | 2013-08-20 00:53:10 +0000 |
| commit | 60df08fc1a944e889c6f51dac95378ab00d24f9a (patch) | |
| tree | dba38540432e8dfe5946b2bd8bd422ebfba12fe6 /files/keyserver | |
| parent | 665f1ee4e0b05b482d02443528aee43fd70839c1 (diff) | |
| download | ansible-60df08fc1a944e889c6f51dac95378ab00d24f9a.tar.gz ansible-60df08fc1a944e889c6f51dac95378ab00d24f9a.tar.xz ansible-60df08fc1a944e889c6f51dac95378ab00d24f9a.zip | |
Add /etc/httpd/conf.d/sks.conf to ansible
Diffstat (limited to 'files/keyserver')
| -rw-r--r-- | files/keyserver/sks.conf | 57 | ||||
| -rw-r--r-- | files/keyserver/sksconf | 1 |
2 files changed, 58 insertions, 0 deletions
diff --git a/files/keyserver/sks.conf b/files/keyserver/sks.conf new file mode 100644 index 000000000..769adbe75 --- /dev/null +++ b/files/keyserver/sks.conf @@ -0,0 +1,57 @@ +ServerName keys.fedoraproject.org +Listen 80.239.156.219:11371 + +<ifModule !mod_proxy.c> + LoadModule proxy_module modules/mod_proxy.so +</IfModule> + +<IfModule !mod_proxy_http.c> + LoadModule proxy_http_module modules/mod_proxy_http.so +</IfModule> + +<IfModule !mod_proxy_balancer.c> + LoadModule proxy_balancer_module modules/mod_proxy_balancer.so +</IfModule> + +<IfModule !mod_headers.c> + LoadModule headers_module modules/mod_headers.so +</IfModule> + +<IfModule !mod_authz_host.c> + LoadModule authz_host_module modules/mod_authz_host.so +</IfModule> + +<IfModule !mod_log_config.c> + LoadModule log_config_module modules/mod_log_config.so +</IfModule> + +<IfModule !mod_env.c> + LoadModule env_module modules/mod_env.so +</IfModule> + +<Directory /> + Options FollowSymLinks + AllowOverride None + Order deny,allow + Deny from all +</Directory> + +<IfModule mod_ssl.c> +<VirtualHost *:443> + ServerAdmin sysadmin-keys-members@fedoraproject.org + ServerName keys.fedoraproject.org + + SSLEngine on + SSLCertificateFile /etc/pki/tls/keys_fedoraproject_org.crt.pem + SSLCertificateKeyFile /etc/pki/tls/keys_fedoraproject_org.key + ProxyPass / http://localhost:11371/ + ProxyPassReverse / http://localhost:11371/ +</VirtualHost> +<VirtualHost *:11371> + ServerAdmin sysadmin-keys-members@fedoraproject.org + ServerName keys.fedoraproject.org + ProxyPass / http://127.0.0.1:11371/ + ProxyPassReverse / http://127.0.0.1:11371/ + SetEnv proxy-nokeepalive 1 +</VirtualHost> +</IfModule> diff --git a/files/keyserver/sksconf b/files/keyserver/sksconf index 2a29eb3ec..e0cd4899a 100644 --- a/files/keyserver/sksconf +++ b/files/keyserver/sksconf @@ -1,5 +1,6 @@ basedir: /srv/sks hostname: keys.fedoraproject.org +hkp_address: 127.0.0.1 hkp_port: 11371 recon_port: 11370 gossip_interval: 1440 |
