{"id":20996,"date":"2025-05-31T21:56:46","date_gmt":"2025-05-31T13:56:46","guid":{"rendered":"https:\/\/blog.pmail.idv.tw\/?p=20996"},"modified":"2025-05-31T21:56:46","modified_gmt":"2025-05-31T13:56:46","slug":"%e5%bc%b1%e9%bb%9e%e6%8e%83%e6%8f%8fcentos-7-%e9%9a%b1%e8%97%8fapache-%e7%89%88%e6%9c%ac%e8%b3%87%e8%a8%8a%e8%a8%ad%e5%ae%9a","status":"publish","type":"post","link":"https:\/\/blog.pmail.idv.tw\/?p=20996","title":{"rendered":"\u5f31\u9ede\u6383\u63cfCentoS 7 \u96b1\u85cfapache \u7248\u672c\u8cc7\u8a0a\u8a2d\u5b9a"},"content":{"rendered":"<p>\u4f7f\u7528openvas scan \u5f9e\u5916\u90e8IP\u6383\u63cf\u4e00\u500b centos 7 \u4e0a apache \u7db2\u7ad9<strong><font color=\"#ff0000\">(\u6709\u7d93\u904e\u8207\u8a31)<\/font><\/strong><\/p>\n<p>\u505a\u4e86\u4e00\u4e0b\u7d00\u9304:<\/p>\n<p><!--more--><\/p>\n<p>\u6383\u63cf\u5f8c\u6709\u627e\u51fa\u4e00\u4e9b\u98a8\u96aa<\/p>\n<p>\u7b2c\u4e00\u500b \u53ef\u4ee5\u6383\u51facentos \u7248\u672c (\u6700\u597d\u7684\u65b9\u5f0f\u9084\u662f\u628aOS\u7248\u672c\u5347\u7d1a)<\/p>\n<p>\u66ab\u6642\u89e3\u6c7a\u65b9\u5f0f<\/p>\n<p>\u964d\u4f4e\u8cc7\u8a0a\u63ed\u9732<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/hild-apachever1-1.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"644\" height=\"268\" title=\"hild-apachever1\" style=\"display: inline; background-image: none;\" alt=\"hild-apachever1\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/hild-apachever1_thumb-1.jpg\" border=\"0\"><\/a><\/p>\n<p>\u4fee\u6539vi \/etc\/httpd\/conf\/httpd.conf&nbsp;&nbsp; #RHEL\/CentOS systems<\/p>\n<p>\u65b0\u589e\/\u4fee\u6539\/\u9644\u52a0\u4e0b\u9762\u7684\u884c<br \/>\nServerTokens Prod<br \/>\nServerSignature Off<\/p>\n<p>\u8a2d\u5b9a\u597d\u91cd\u555fapache\u670d\u52d9<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/hild-apachever2-1.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"644\" height=\"280\" title=\"hild-apachever2\" style=\"display: inline; background-image: none;\" alt=\"hild-apachever2\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/hild-apachever2_thumb-1.jpg\" border=\"0\"><\/a><\/p>\n<p>\u53ef\u4ee5\u7528nmap \u6307\u4ee4<\/p>\n<p>nmap.exe -T4 -sV -p 443&nbsp; x.x.x.x<br \/>\nnmap.exe -p 443 &#8211;script ssl-enum-ciphers&nbsp; x.x.x.x<\/p>\n<p>\u7b2c\u4e8c\u500b\u554f\u984c<\/p>\n<p>https \u6709\u9ad8\u98a8\u96aa\u7684\u52a0\u5bc6\u5957\u4ef6<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_204638.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"515\" height=\"484\" title=\"2025-05-31_204638\" style=\"display: inline; background-image: none;\" alt=\"2025-05-31_204638\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_204638_thumb.jpg\" border=\"0\"><\/a><\/p>\n<p>\u89e3\u6c7a\u65b9\u5f0f\u95dc\u9589\u8001\u820a\u7248\u672c\u52a0\u5bc6\u5957\u4ef6<\/p>\n<p>\u7de8\u8f2f \/etc\/httpd\/conf.d\/ssl.conf<\/p>\n<p>\u5c07\u9810\u8a2dSSLCipherSuite \u8a2d\u5b9a\u8a3b\u89e3<\/p>\n<p>\u4fee\u6539\u5982\u4e0b\u8a2d\u5b9a(apache \u5b98\u65b9\u5efa\u8b70)<\/p>\n<p>SSLCipherSuite ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384<\/p>\n<p>\u8a2d\u5b9a\u597d\u91cd\u555fapache\u670d\u52d9<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_204411.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"644\" height=\"62\" title=\"2025-05-31_204411\" style=\"display: inline; background-image: none;\" alt=\"2025-05-31_204411\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_204411_thumb.jpg\" border=\"0\"><\/a><\/p>\n<h3>\u7b2c\u4e09\u500b\u4e2d\u5ea6\u98a8\u96aa<\/h3>\n<p>\u4f7f\u7528TLS 1.0 1.1 \u820a\u7684\u5354\u5b9a<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_210052.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"644\" height=\"276\" title=\"2025-05-31_210052\" style=\"display: inline; background-image: none;\" alt=\"2025-05-31_210052\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_210052_thumb.jpg\" border=\"0\"><\/a><\/p>\n<h3>\u89e3\u6c7a\u65b9\u5f0f Apache \u505c\u7528 TLSv1.0 \u50b3\u8f38\u5c64\u5b89\u5168\u6027\u5354\u5b9a <\/h3>\n<p>\u7de8\u8f2f \/etc\/httpd\/conf.d\/ssl.conf<\/p>\n<p>\u627e\u5230 SSLProtocol \u5340\u6bb5\uff0c\u7528\u300c+\u300d\u3001\u300c-\u300d\u7684\u65b9\u5f0f\u8a2d\u5b9a\u652f\u63f4\u7684\u5354\u5b9a\uff0c\u9810\u8a2d\u5df2\u7d93\u79fb\u9664 SSLv2 \u548c SSLv3 \uff0c\u6b64\u6b21\u591a\u79fb\u9664 TLS 1.0 1.1 \uff0c\u8a2d\u5b9a\u5982\u4e0b (\u53ef\u53c3\u8003\u4e0b\u5716)<\/p>\n<p>SSLProtocol all -SSLv2 -SSLv3 -TLSv1 -TLSv1.1<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_204411-1.jpg\"><img loading=\"lazy\" decoding=\"async\" width=\"644\" height=\"62\" title=\"2025-05-31_204411\" style=\"display: inline; background-image: none;\" alt=\"2025-05-31_204411\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2025\/05\/2025-05-31_204411_thumb-1.jpg\" border=\"0\"><\/a><\/p>\n<p>\u53c3\u8003\u8cc7\u6599\n<\/p>\n<p><a title=\"https:\/\/ishm.idv.tw\/archives\/396\" href=\"https:\/\/ishm.idv.tw\/archives\/396\" target=\"_blank\">https:\/\/ishm.idv.tw\/archives\/396<\/a>\n<\/p>\n<p><a title=\"https:\/\/gist.github.com\/unciax\/8c4008505e373103ddddab0a7b019611\" href=\"https:\/\/gist.github.com\/unciax\/8c4008505e373103ddddab0a7b019611\" target=\"_blank\">https:\/\/gist.github.com\/unciax\/8c4008505e373103ddddab0a7b019611<\/a><\/p>\n<p><a title=\"https:\/\/www.gss.com.tw\/blog\/set-https-connect-protocols-and-ciphers\" href=\"https:\/\/www.gss.com.tw\/blog\/set-https-connect-protocols-and-ciphers\" target=\"_blank\">https:\/\/www.gss.com.tw\/blog\/set-https-connect-protocols-and-ciphers<\/a><\/p>\n<div class=\"21cd169d3c0f71e95b84db320302cb4a\" data-index=\"1\" style=\"float: right; margin:10px 0 10px 10px;\">\n<script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-8711325745898650\"\r\n     crossorigin=\"anonymous\"><\/script>\n<\/div>\n\n<div style=\"font-size: 0px; height: 0px; line-height: 0px; margin: 0; padding: 0; clear: both;\"><\/div>","protected":false},"excerpt":{"rendered":"<p>\u4f7f\u7528openvas scan \u5f9e\u5916\u90e8IP\u6383\u63cf\u4e00\u500b centos 7 \u4e0a apac &hellip; <a href=\"https:\/\/blog.pmail.idv.tw\/?p=20996\">\u95b1\u8b80\u5168\u6587 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":123457,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0,"footnotes":""},"categories":[183],"tags":[],"class_list":["post-20996","post","type-post","status-publish","format-standard","hentry","category-183"],"_links":{"self":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/20996","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/users\/123457"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=20996"}],"version-history":[{"count":1,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/20996\/revisions"}],"predecessor-version":[{"id":20997,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/20996\/revisions\/20997"}],"wp:attachment":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=20996"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=20996"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=20996"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}