#author("2025-08-11T05:41:49+00:00","default:iseki","iseki") #author("2025-08-11T08:35:15+00:00","default:iseki","iseki") ** Virtual Host for Apache *** conf.d/hogebar.conf <pre> <VirtualHost *:443> ServerName hogebar.jp ServerName janus.jogrid.net SSLEngine on SSLCertificateFile /etc/letsencrypt/live/hogebar.jp/fullchain.pem SSLCertificateKeyFile /etc/letsencrypt/live/hogebar.jp/privkey.pem SSLCertificateFile /etc/letsencrypt/live/janus.jogrid.net/fullchain.pem SSLCertificateKeyFile /etc/letsencrypt/live/janus.jogrid.net/privkey.pem # REST → 8088 ProxyPreserveHost On ProxyRequests Off # REST API → 8088 ProxyPass /janus http://127.0.0.1:8088/janus retry=0 ProxyPassReverse /janus http://127.0.0.1:8088/janus # WebSocket → 8188(mod_proxy_wstunnel) ProxyPass /janusws ws://127.0.0.1:8188/ ProxyPassReverse /janusws ws://127.0.0.1:8188/ ProxyPass /janusws ws://127.0.0.1:8188/janus ProxyPassReverse /janusws ws://127.0.0.1:8188/janus # 任意:管理画面(有効化している場合のみ公開を検討) # 管理画面 ProxyPass /admin http://127.0.0.1:7088/admin ProxyPassReverse /admin http://127.0.0.1:7088/admin # セキュリティヘッダ例 Header always set Strict-Transport-Security "max-age=31536000; includeSubDomains" </VirtualHost> </pre> - [[certbot]] の設定 #br #br