Commit 41b38586 authored by Piotr Gawron's avatar Piotr Gawron
Browse files

install script covers tomcat8 and stronger password for ssl certificates

parent ab58e609
...@@ -17,8 +17,9 @@ apt-get install -y mc apache2 php libapache2-mod-php7.0 minerva ...@@ -17,8 +17,9 @@ apt-get install -y mc apache2 php libapache2-mod-php7.0 minerva
#change tomcat memory limit to 4GB #change tomcat memory limit to 4GB
sed -i 's/-Xmx128m/-Xmx4192m/g' /etc/default/tomcat7 sed -i 's/-Xmx128m/-Xmx4192m/g' /etc/default/tomcat7
sed -i 's/-Djava.awt.headless=true/-Djava.awt.headless=true -Xmx4192m/g' /etc/default/tomcat8
#setup proxy in apache to go to tomcat7 #setup proxy in apache to go to tomcat
sed -i '2i\ ProxyPass /minerva http://localhost:8080/minerva\n ProxyPass /map_images http://localhost:8080/map_images\n ProxyPassReverse /minerva http://localhost:8080/minerva\n ProxyPassReverse /map_images http://localhost:8080/map_images\n' /etc/apache2/sites-enabled/000-default.conf sed -i '2i\ ProxyPass /minerva http://localhost:8080/minerva\n ProxyPass /map_images http://localhost:8080/map_images\n ProxyPassReverse /minerva http://localhost:8080/minerva\n ProxyPassReverse /map_images http://localhost:8080/map_images\n' /etc/apache2/sites-enabled/000-default.conf
a2enmod proxy a2enmod proxy
...@@ -27,8 +28,8 @@ service apache2 restart ...@@ -27,8 +28,8 @@ service apache2 restart
#create SSL certificat #create SSL certificat
sudo mkdir /etc/apache2/ssl sudo mkdir /etc/apache2/ssl
sudo openssl genrsa -des3 -passout pass:x -out /etc/apache2/ssl/server.pass.key 2048 sudo openssl genrsa -des3 -passout pass:xxxxyyyy -out /etc/apache2/ssl/server.pass.key 2048
sudo openssl rsa -passin pass:x -in /etc/apache2/ssl/server.pass.key -out /etc/apache2/ssl/server.key sudo openssl rsa -passin pass:xxxxyyyy -in /etc/apache2/ssl/server.pass.key -out /etc/apache2/ssl/server.key
sudo rm /etc/apache2/ssl/server.pass.key sudo rm /etc/apache2/ssl/server.pass.key
sudo openssl req -new -key /etc/apache2/ssl/server.key -out /etc/apache2/ssl/server.csr -subj "/C=LU/ST=Luxembourg/L=Esch-sur-Alzette/O=UL/OU=LCSB/CN=example.com" sudo openssl req -new -key /etc/apache2/ssl/server.key -out /etc/apache2/ssl/server.csr -subj "/C=LU/ST=Luxembourg/L=Esch-sur-Alzette/O=UL/OU=LCSB/CN=example.com"
sudo openssl x509 -req -days 365 -in /etc/apache2/ssl/server.csr -signkey /etc/apache2/ssl/server.key -out /etc/apache2/ssl/server.crt sudo openssl x509 -req -days 365 -in /etc/apache2/ssl/server.csr -signkey /etc/apache2/ssl/server.key -out /etc/apache2/ssl/server.crt
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment