Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <VirtualHost *:80>
- ServerName <FQDN>
- Redirect permanent / https://<FQDN>
- </VirtualHost>
- <VirtualHost *:443>
- DocumentRoot /usr/local/www/nextcloud
- ServerName <FQDN>
- <FilesMatch \.php$>
- SetHandler "proxy:fcgi://127.0.0.1:9000/"
- </FilesMatch>
- DirectoryIndex /index.php index.php
- ServerAdmin <EMAIL>
- SSLEngine on
- SSLCertificateFile /usr/local/etc/apache24/certs/Nextcloud.fullchain.pem
- SSLCertificateKeyFile /usr/local/etc/apache24/certs/Nextcloud.key.pem
- Protocols h2 http/1.1
- # modern configuration, tweak to your needs
- SSLProtocol all -SSLv3 -TLSv1 -TLSv1.1 -TLSv1.2
- SSLCipherSuite HIGH:!aNULL:!MD5
- SSLHonorCipherOrder on
- SSLCompression off
- SSLSessionTickets off
- SSLOptions +StrictRequire
- <IfModule mod_headers.c>
- Header always set Strict-Transport-Security "max-age=63072000; includeSubDomains"
- </IfModule>
- </VirtualHost>
- SSLUseStapling On
- SSLStaplingCache "shmcb:logs/ssl_stapling(32768)"
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement