Btw, for multi line, it's best to use 3 back ticks instead of 1
SSL not working on production hosting
Votes
0
Replies
24
Participants
Unknown
Messages
25
Rank 2: Process
okay
Rank 2: Process
😀
Maybe your proxy pass over here should go to https
Rank 2: Process
ProxyPass / https://127.0.0.1:3031/
ProxyPassReverse / https://127.0.0.1:3031/
Rank 2: Process
like this ?
Rank 2: Process
no . . . . .
it's not working
Rank 2: Process
last time i opened SMTP error and conclusion was we need to have ssl on appwrite.example.com
Rank 2: Process
so now I have a ssl on domain, all subdomains
Rank 2: Process
but it is not redirecting on https
Rank 2: Process
<VirtualHost *:80>
ServerName appwrite.exampledev.xyz
ServerAlias appwrite.exampledev.xyz
ServerAdmin govinddeshmukh2001@gmail.com
#DocumentRoot /var/www/appwrite.exampledev.xyz
ErrorLog ${APACHE_LOG_DIR}/error.log
CustomLog ${APACHE_LOG_DIR}/access.log combined
ProxyPass / http://127.0.0.1:3030/
ProxyPassReverse / http://127.0.0.1:3030/
#proxy_set_header Host $host;
#ProxyRequests Off
ProxyPassReverseCookieDomain "127.0.0.1:3030" "appwrite.exampledev.xyz"
ProxyPreserveHost On
</VirtualHost>
<VirtualHost *:443>
ServerName appwrite.exampledev.xyz
ServerAlias appwrite.exampledev.xyz
ServerAdmin govinddeshmukh2001@gmail.com
#DocumentRoot /var/www/appwrite.exampledev.xyz
ErrorLog ${APACHE_LOG_DIR}/error.log
CustomLog ${APACHE_LOG_DIR}/access.log combined
#ProxyPass / http://127.0.0.1:3031/
#ProxyPassReverse / http://127.0.0.1:3031/
#proxy_set_header Host $host;
#ProxyRequests Off
#ProxyPassReverseCookieDomain "127.0.0.1:3031" "appwrite.exampledev.xyz"
#ProxyPreserveHost On
#SSL
SSLEngine On
SSLCertificateFile /etc/letsencrypt/live/exampledev.xyz/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/exampledev.xyz/privkey.pem
SSLCertificateChainFile /etc/letsencrypt/live/exampledev.xyz/chain.pem
SSLCipherSuite EECDH+CHACHA20:EECDH+CHACHA20-draft:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5
SSLProtocol All -SSLv2 -SSLv3 -TLSv1
SSLHonorCipherOrder On
</VirtualHost>
Rank 2: Process
here is complete vhost configuration
Uhh the 443 proxy pass is commented out 🧐 and it's not https
Rank 2: Process
<VirtualHost *:80>
ServerName appwrite.exampledev.xyz
ServerAlias appwrite.exampledev.xyz
ServerAdmin govinddeshmukh2001@gmail.com
#DocumentRoot /var/www/appwrite.exampledev.xyz
ErrorLog ${APACHE_LOG_DIR}/error.log
CustomLog ${APACHE_LOG_DIR}/access.log combined
ProxyPass / http://127.0.0.1:3030/
ProxyPassReverse / http://127.0.0.1:3030/
#proxy_set_header Host $host;
#ProxyRequests Off
ProxyPassReverseCookieDomain "127.0.0.1:3030" "appwrite.exampledev.xyz"
ProxyPreserveHost On
</VirtualHost>
<VirtualHost *:443>
ServerName appwrite.exampledev.xyz
#ServerAlias appwrite.exampledev.xyz
ServerAdmin govinddeshmukh2001@gmail.com
#DocumentRoot /var/www/appwrite.exampledev.xyz
ErrorLog ${APACHE_LOG_DIR}/error.log
CustomLog ${APACHE_LOG_DIR}/access.log combined
ProxyPass / https://127.0.0.1:3031/
ProxyPassReverse / https://127.0.0.1:3031/
#proxy_set_header Host $host;
#ProxyRequests Off
ProxyPassReverseCookieDomain "127.0.0.1:3031" "appwrite.exampledev.xyz"
ProxyPreserveHost On
#SSL
SSLEngine On
SSLCertificateFile /etc/letsencrypt/live/exampledev.xyz/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/exampledev.xyz/privkey.pem
SSLCertificateChainFile /etc/letsencrypt/live/exampledev.xyz/chain.pem
SSLCipherSuite EECDH+CHACHA20:EECDH+CHACHA20-draft:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5
SSLProtocol All -SSLv2 -SSLv3 -TLSv1
SSLHonorCipherOrder On
</VirtualHost>
Rank 2: Process
now ?????
Rank 2: Process
Can you browse to your server using https on port 3031?
Rank 2: Process
okay
Rank 2: Process
Rank 2: Process
its working like this but ssl is not visible
Maybe you can check Apache logs for why this error is happening then
Rank 2: Process
🥲
Rank 2: Process
not getting anything in logs
Rank 2: Process
please tell me correct apache2 configuration for appwrite
Sorry I don't really know Apache. The only other resource I have is: https://github.com/appwrite/appwrite/discussions/4056