APACHE SECURED BY SSL <subtitle>Apache-SSL <author>Team A.L. Digital & Apache-SSL <date>Feburary 5, 2000 <trans>Á¶´ëÇö, <htmlurl url="mailto:cool@hansaram.sarang.net" name="cool@hansaram.sarang.net"> <tdate>v0.3 2000³â 2¿ù 20ÀÏ <abstract> ÀÌ ¹®¼­´Â https://www.apache-ssl.org/ ÀÇ ³»¿ëÀ» ¹ø¿ª(?) ÇÑ °ÍÀÔ´Ï´Ù. </abstract> <!-- Â÷·Ê --> <toc> <!-- Main Features --> <sect>Main Features <p> <itemize> <item>»ó¾÷ ºñ»ó¾÷Àû ÀÌ¿ë °¡´É <item>¼¼°è ¾îµð¼­³ª 128ºñÆ® ÀÎÅ©¸³¼ÇÀÌ °¡´É <item>Ŭ¶óÀ̾ðÆ® Áõ¸í <item>Àüü ¼Ò½º ÄÚµå <item>È®Àå°¡´ÉÇÑ ¸ð´¼Çü½ÄÀÇ API </itemize> <!-- Apache-SSLÀ̶õ? --> <sect>Apache-SSLÀ̶õ? <p> Apache-SSLÀº <htmlurl url="http://www.apache.org" name="Apache">¿Í <htmlurl url="http://www.psy.uq.oz.au/~ftp/Crypto/" name="SSLeay">/<htmlurl url="http://www.openssl.org" name="OpenSSL">À» ±â¹ÝÀ¸·Î ÇÏ´Â º¸¾È À¥¼­¹öÀÌ´Ù. ÀÌ°ÍÀº BSD Çü½ÄÀÇ <htmlurl url="http://www.apache-ssl.org/LICENCE.SSL.txt" name="license">¿¡ ±â¹ÝÇÑ´Ù. °£´ÜÈ÷ copyright notices¸¸ À¯ÁöÇÑ´Ù¸é »ó¾÷ÀûÀÌµç ºñ »ó¾÷ÀûÀÌµç °øÂ¥·Î ¾µ¼ö ÀÖ´Ü ¸»ÀÌ´Ù(´ÜÁö ¼­¹ö¸¦ µ¹¸®±â Àü¿¡ <htmlurl url="http://www.psy.uq.oz.au/~ftp/Crypto/#is this legal" name="SSLeay Is this legal? FAQ">´Â ÀÐ¾î º¸±æ ±ÇÇÑ´Ù). This is the same license as used by Apache from version 0.8.15 <!-- ´Ù¿î·Îµå --> <sect>´Ù¿î·Îµå <p> ÇöÀç ¸±¸®Áî: <tt><bf>Apache_1.3.11+ssl_1.38</bf></tt> ¸±¸®Áî ³¯Â¥: <tt><bf>2000³â 1¿ù 25ÀÏ</bf></tt> <p> ´ç½ÅÀº ¶ÇÇÑ <tt><bf>openssl-0.9.4</bf></tt>°¡ ÇÊ¿äÇÏ°í <htmlurl url="http://www.openssl.org" name="¿©±â">¼­ ±¸ÇÒ ¼ö ÀÖ´Ù. <p> Apache-SSL ¼Ò½º ÆÐÄ¡´Â ´ÙÀ½ UK ¸¶½ºÅÍ ¹èÆ÷ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Ù: <itemize> <item><htmlurl url="ftp://ftp.ox.ac.uk/pub/crypto/SSL/Apache-SSL" name="Oxford University."> <item><htmlurl url="ftp://ftp.master.pgp.net/pub/crypto/SSL/Apache-SSL" name="University of Cambridge Computer Laboratory">¿Í <htmlurl url="ftp://ftp.master.pgp.net/pub/crypto/README" name="¹Ì·¯"> </itemize> ´Ù¸¥ FTP ¹Ì·¯ »çÀÌÆ®µé: <itemize> <item><htmlurl url="ftp://ftp.zedz.net/pub/crypto/apache/Apache-SSL" name="ftp.zedz.net"> (The Netherlands) <item><htmlurl url="ftp://ftp.win.ne.jp/pub/network/www/Apache-SSL" name="ftp.win.ne.jp"> (Japan) <item><htmlurl url="ftp://ftp.sage-au.org.au/pub/network/security/apache-ssl/Apache-SSL" name="ftp.sage-au.org.au"> (Australia) <item><htmlurl url="ftp://ftp.vwv.com/pub/crypto/SSL/Apache-SSL" name="ftp.vwv.com"> (South Africa) <item><htmlurl url="ftp://mirror.aarnet.edu.au/www/servers/apache-ssl" name="mirror.aarnet.edu.au"> (Australia) <item><htmlurl url="ftp://ftp.it.net.au/mirrors/crypto/SSL/Apache-SSL" name="ftp.it.net.au"> (Australia) <item><htmlurl url="ftp://ftp.infoscience.co.jp/pub/Crypto/SSL/Apache-SSL/Apache-SSL" name="ftp.infoscience.co.jp"> (Japan) <item><htmlurl url="ftp://ftp.funet.fi/pub/crypt/mirrors/ftp.ox.ac.uk/SSL/Apache-SSL" name="ftp.funet.fi"> (Finland) <item><htmlurl url="ftp://apache-ssl.raver.net/pub/ftp.apache-ssl.org/Apache-SSL" name="apache-ssl.raver.net"> (Canada) <item><htmlurl url="ftp://ftp.pca.dfn.de/pub/tools/net/sslapache/Apache-SSL" name="ftp.pca.dfn.de"> (Germany) <item><htmlurl url="ftp://ftp.sekure.net/pub/apache-ssl" name="ftp.sekure.net"> (Sweden) <item><htmlurl url="ftp://ftp.clinet.fi/mirrors/ftp.apache-ssl.org/pub" name="ftp.clinet.fi"> (Finland) <item><htmlurl url="ftp://opensores.thebunker.net/pub/mirrors/apache-ssl" name="opensores.thebunker.net"> (UK) <item><htmlurl url="ftp://ftp.gin.cz/pub/MIRRORS/ftp.ox.ac.uk/pub/crypto/SSL/Apache-SSL" name="ftp.gin.cz"> (CZ) </itemize> <p> ¶Ç´Â HTTP ¹Ì·¯ »çÀÌÆ®µé: <itemize> <item><htmlurl url="http://mirror.aarnet.edu.au/www/servers/apache-ssl" name="mirror.aarnet.edu.au"> (Australia) <item><htmlurl url="http://ftp.it.net.au/mirrors/crypto/SSL/Apache-SSL" name="ftp.it.net.au"> (Australia) </itemize> <p> O/S specific ¹öÀüµé: <itemize> <item><htmlurl url="http://www.redhat.com/" name="RedHat">, <htmlurl url="http://www.caldera.com/" name="Caldera"> ±×¸®°í <htmlurl url="http://www.turbolinux.com/" name="TurboLinux"> ¼Ò½º¿Í ½ÇÇà°¡´ÉÇÑ .rpm µé ¿ª½Ã µÚ¿¡ ³ª¿­µÈ ¸ðµç ¼­¹öÀÇ contrib/rpms µð·ºÅ丮¿¡¼­ ãÀ» ¼ö ÀÖ´Ù. <item><htmlurl url="http://www.freebsd.org"> Æ÷Æ® ÀÖ´Â °÷: <htmlurl url="http://www.freebsd.org/ports/www.html" name="http://www.freebsd.org/ports/www.html">. </itemize> <!-- ÇÊ¿äÇÑ°ÍÀº? --> <sect>ÇÊ¿äÇÑ °ÍÀº? <p> ÇÊ¿äÇÑ °ÍµéÀº <htmlurl url="http://www.apache.org" name="¾ÆÆÄÄ¡">(1.2.0+ °ú 1.3.0+ ¹öÀü¿¡¼­ °¡´É)¿ë ÆÐÄ¡¿Í ¸î°³ÀÇ Æ¯º°ÇÑ ¼Ò½º ÆÄÀÏ, ¾ÆÁÖ Á¶±ÝÀÇ README¿Í ¼³Á¤ ¿¹Á¦ ÆÄÀϵéÀÌ´Ù. ÆÐÄ¡´Â ¾ÆÆÄÄ¡ ¼Ò½º¿¡ Àû¿ëµÈ ÈÄ¿¡ ÄÄÆÄÀÏ µÇ°í, SSLeay(<htmlurl url="http://www.psy.uq.oz.au/~ftp/Crypto/#Where to get {{SSLeay}} - FTP site list" name="¹öÀü 0.5.1b+">) ¶Ç´Â <htmlurl url="http://www.openssl.org" name="OpenSSL">°ú ¿¬°áµÈ´Ù. The modified source will still compile a standard Apache as well as Apache-SSL. <!-- ÃÖ½ÅÀ¸·Î À¯ÁöÇϱâ --> <sect>ÃÖ½ÅÀ¸·Î À¯ÁöÇϱâ <p> ¾÷±×·¹À̵带 °¡Àå Àß ¾Ë ¼ö ÀÖ´Â ¹æ¹ýÀº °¡Àå ÃÖ½ÅÀÇ ¹öÀüÀ» ¾Ë·ÁÁÖ´Â ¹ßÇ¥(announce) <htmlurl url="#Mailing_List" name="¸ÞÀϸµ ¸®½ºÆ®">¿¡ °¡ÀÔÇÏ´Â °ÍÀÌ´Ù. <!-- ¹ú·¹ Àâ±â¿Í ÆÐÄ¡ --> <sect>¹ú·¹ Àâ±â¿Í ÆÐÄ¡ <p> ¹ú·¹³ª °³¼±»çÇ×Àº <htmlurl url="mailto:ben@algroup.co.uk" name="ben@algroup.co.uk">·Î º¸³»¶ó. <p> ¹ö±×³ª ¹®Á¦Á¡µéÀ» ·¹Æ÷ÆÃÇϴµ¥ ºÎ´ãÀ» ´À³¢Áö ¸¶¶ó. ±×·¯³ª, (´ç½ÅÀÌ µ·À» ÁöºÒÇÒ Àǻ簡 ÀÖ´õ¶óµµ.. --;) ¾à¼Ó(°íÄ£´Ù´Â?)Àº ¸øÇÏ°Ú´Ù. <!-- »ó¾÷Àû Áö¿ø --> <sect>»ó¾÷Àû Áö¿ø <p> ¾ÆÆÄÄ¡³ª Apache-SSL µÑ´Ù »ó¾÷ÀûÀÎ Áö¿øÀÌ °¡´ÉÇÏ´Ù. Èï¹Ì Àְŵç <htmlurl url="mailto:ben@algroup.co.uk" name="ben@algroup.co.uk">·Î ¸ÞÀÏÀ» º¸³»¶ó. <!-- ÀüÀÚ Áõ¸í --> <sect>ÀüÀÚ Áõ¸í <p> ´ÙÀ½Àº ÆäÀÌÁö ¸µÅ©¸¦ ¿äûÇؿ ȸ»çµéÀÌ´Ù. ³ª´Â ¾Æ·¡ ´ÜüµéÀ» º¸Áõ, ÃßõÇÏÁöµµ ¾Ê°í ³ª¿ÍÀÇ °ü°è ¿ª½Ã ÀüÇô ¾ø´Ù. ¿äûÇÑ ¼øÀ¸·Î ³ª¿­ÇÏ¿´´Ù. <p> Apache-SSL¿ë ÀüÀÚ Áõ¸íÀÌ °¡´ÉÇÑ °÷µé: <itemize> <item>Thawte Consulting, at <htmlurl url="http://www.thawte.com/certs/server/request.html" name="http://www.thawte.com/certs/server/request.html"> <item>CertiSign Certificadora Digital Ltda., at <htmlurl url="http://www.certisign.com.br/" name="http://www.certisign.com.br/"> <item>IKS GmbH, at <htmlurl url="http://www.iks-jena.de/produkte/ca/" name="http://www.iks-jena.de/produkte/ca/"> <item>BelSign NV/SA, at <htmlurl url="http://www.belsign.be/" name="http://www.belsign.be/"> <item>VeriSign, Inc. at <htmlurl url="http://www.verisign.com/guide/apache/" name="http://www.verisign.com/guide/apache/"> <item>TC TrustCenter (Germany) at <htmlurl url="http://www.trustcenter.de/html/Produkte/TC_Server/855.htm" name="http://www.trustcenter.de/html/Produkte/TC_Server/855.htm"> <item>NLsign B.V. at <htmlurl url="http://www.nlsign.nl/" name="http://www.nlsign.nl/"> <item>Deutsches Forschungsnetz at <htmlurl url="http://www.pca.dfn.de/dfnpca/certify/ssl/" name="http://www.pca.dfn.de/dfnpca/certify/ssl/"> <item>128i Ltd. (New Zealand) at <htmlurl url="http://www.128i.com/" name="http://www.128i.com/"> <item>Entrust.net Ltd. at <htmlurl url="http://www.entrust.net/products/index.htm" name="http://www.entrust.net/products/index.htm"> <item>Equifax Inc. at <htmlurl url="http://www.equifaxsecure.com/ebusinessid/" name="http://www.equifaxsecure.com/ebusinessid/"> <item>GlovalSign NV/SA at <htmlurl url="http://www.globalsign.net/" name="http://www.globalsign.net/"> <p> <item>¹°·Ð ´ç½ÅÀÇ »çÀÌÆ®µµ ³ÖÀ» ¼ö ÀÖ´Ù. </itemize> <!-- PGP key --> <sect>PGP Å°(key) <p> ³ª¿¡°Ô »çÀûÀÎ ¸ÞÀÏÀ» º¸³¾·Á¸é, <htmlurl url="http://www.apache-ssl.org/ben.key.txt" name="¿©±â">³» PGPÅ°°¡ ÀÖ´Ù. Á¦¹ß ºô¿äÇÑ µ¥¸¸ ½á´Þ¶ó; ³ª´Â Æнº¹®(passphrase) ŸÀÌÇÎÀÌ Á¤¸» ½È´Ù.. --+ <!-- Frequently Asked Question --> <sect>FAQ <p> <sect1>Apache-SSL Àº Çѵ¿¾È ¾÷µ¥ÀÌÆ® µÇÁö ¾Ê¾Ò´Ù - ÀÌ°Ç ³°¾Ò´Ù(out-of-date)´Â ¸»Àΰ¡? <p> ¾Æ´Ï´Ù, À§¸»Àº ±×°Í(Apache-SSL)ÀÌ »ç¶÷µéÀÌ ¿øÇÏ´Â ¸¸Å­ Àß ÀÛµ¿ÇÑ´Ù´Â ¶æÀÌ´Ù. ¿ì¸®´Â °íÃÄÁ®¾ß ÇÒ ¹ö±×°¡ ÀÖÀ»¶§¿Í »õ ¹öÀüÀÇ Apache(ÀÌÇÏ ¾ÆÆÄÄ¡)°¡ ³ª¿Ã¶§, ¶Ç´Â ´©±º°¡°¡ »õ·Î¿î ±â´ÉÀ» ¿øÇÒ¶§¸¸ ¾÷µ¥ÀÌÆ® ÇÑ´Ù. <sect1>³» ºê¶ó¿ìÀú´Â ¿Ö Apache-SSL¿¡ Á¢¼ÓÇÒ ¶§ ¸ØÃçÀֱ⸸ Çϳª? <p> <tt/https:/ ´ë½Å¿¡ <tt/http:/¸¦ »ç¿ëÇ߱⠶§¹®ÀÌ´Ù. ¶Ç, ¿¡·¯ ·Î±×¿¡¼­ ´ÙÀ½ ¸Þ½ÃÁö¸¦ º»°Ô µÈ´Ù¸é ¿ª½Ã À§¿Í°°Àº ÀÌÀ¯¿¡¼­´Ù. <verb> SSL_Accept failed error:140760EB:SSL routines:SSL23_GET_CLIENT_HELLO:unknown protocol </verb> <sect1>ÆÐÄ¡°¡ Àû¿ëÀÌ ¾ÈµÇ´Âµ¥, ¹¹°¡ À߸øµÈ°Ç°¡? <p> ´ÙÀ½°ú °°Àº °á°ú¸¦ ¾ò´Â´Ù¸é, <verb> $patch < SSLpatch Looks like a new-style context diff. File to patch: </verb> ¾Æ¸¶ ¿¾³¯ ¹öÀüÀÇ patch¸¦ °¡Áö°í ÀÖÀ» °ÍÀÌ´Ù. 2.1 ÀÌ»óÀÇ ¹öÀüÀ¸·Î ¹Ù²Ù°í ´Ù½Ã ½ÃµµÇ϶ó. <sect1>HTTP°¡ Æ÷Æ®(port) 80À» ¾²´Â°Ç ¾Æ´Âµ¥, HTTPS´Â? <p> ´ç½ÅÀº HTTPS¸¦ ¾Æ¹« Æ÷Æ®¿¡¼­³ª µ¹¸± ¼ö ÀÖÁö¸¸, ´ëºÎºÐÀÇ ºê¶ó¿ìÀú°¡ ±âº»À¸·Î ã´Â Ç¥ÁØ Æ÷Æ®´Â 443ÀÌ´Ù. ³Ê(Çä.. ¾ðÁ¦ºÎÅÍ.. --;)´Â ´ÙÀ½°ú °°ÀÌ URL¿¡ Æ÷Æ®¹øÈ£¸¦ ÁöÁ¤Çؼ­ ºê¶ó¿ìÀú°¡ °­Á¦·Î ãµµ·Ï ÇÒ ¼ö ÀÖ´Ù. <verb>https://secure.server.hell:666</verb> <sect1>³ª´Â ÇÑ ¸Ó½Å¿¡¼­ º¸¾È(secure), ºñº¸¾È(non-secure) ¼­¹ö¸¦ °°ÀÌ µ¹¸®°í ½Í´Ù. °¡´ÉÇÑ°¡? <p> µÎ°¡Áö ¹æ¹ýÀÌ ÀÖ´Ù. µÎ°³ÀÇ ¼­¹ö ´ë¸óÀ» µ¹¸®°Å³ª, ÇÑ ´ë¸ó¿¡¼­ µÎ°¡Áö ¼­ºñ½º¸¦ µ¿½Ã¿¡ Çϰųª. µÎ ´ë¸ó¸¦ µ¹¸®´Â ÁÁÀº ÀÌÀ¯°¡ ÀÖ´õ¶óµµ, º¸Åë °¡Àå °£´ÜÇÏ°Ô ÇÑ ¼­¹ö¸¦ µ¹¸®°í SSLÀÌ ÇÊ¿ä¾ø´Â ºÎºÐÀº °¡»óÈ£½ºÆ®(virtual host)·Î ±× ±â´ÉÀ» ²¨¹ö¸®¸é µÈ´Ù. ¸¸¾à µÎ°³ÀÇ ´ë¸óÀ» µ¹¸®°í ½Í´Ù¸é °¢ ¼­¹ö°¡ Á¤ÇØÁø Æ÷Æ®(º¸Åë ºñº¸¾ÈÀº Æ÷Æ® 80, º¸¾ÈÀº 443) ÇÏ°í¸¸ ¿¬°á µÇµµ·Ï ÇØ¾ß ÇÑ´Ù. ÇϳªÀÇ ¼­¹ö¸¸ µ¹¸®°í ½Í´Ù¸é, ¾î¶»°Ô ¼³Á¤ÇÏ´ÂÁö ¿©±â <htmlurl url="http://www.apache-ssl.org/httpd.conf.example" name="¿¹Á¦"> ¼³Á¤ ÆÄÀÏÀÌ ÀÖ´Ù. <sect1>ÀÌÁ¦ ¸· ¼­¹ö¸¦ ¼³Ä¡ Çß´Ù. Å×½ºÆ® Áõ¸í¼­´Â ¾î¶»°Ô ¸¸µå³ª? <p> ´Ü°è Çϳª - Å°(key)¿Í ¿äû(request, û, û±¸.. ¸Ó¾ß.. --;)¸¦ ¸¸µé¾î¶ó. <verb> openssl req -new > new.cert.csr </verb> ´Ü°è µÑ - Å°¿¡¼­ Æнº¹®(passphrase)¸¦ Áö¿ö¶ó(¼±ÅûçÇ×ÀÌ´Ù). <verb> openssl rsa -in privkey.pem -out new.cert.key </verb> ´Ü°è ¼Â - ¿äû(request)À» ¼­¸íµÈ Áõ¸í(cert)À¸·Î ¹Ù²ã¶ó.(¹Ù²ã, ¹Ù²ã, ^^;) <verb> openssl x509 -in new.cert.csr -out neww.cert.cert -req -signkey new.cert.key -days 365 </verb> À§ °á°ú¸¦ Apache-SSLÀÇ Áö½ÃÀÚ·Î ´ÙÀ½°ú °°ÀÌ »ç¿ëÇÑ´Ù. <verb> SSLCertificateFile /path/to/certs/new.cert.cert SSLCertificateKeyFile /path/to/certs/new.cert.key </verb> <sect1>Ŭ¶óÀ̾ðÆ® Áõ¸í¼­´Â ¾î¶»°Ô ¸¸µå³ª? <p> ´Ü°è Çϳª - À§ ó·³ CA Áõ¸í/Å° ½ÖÀ» ¸¸µç´Ù. ´Ü°è µÑ - CA Å°·Î °í°´ ¿äû¿¡ ¼­¸íÇÑ´Ù. <verb> openssl x509 -req -in client.cert.csr -out client.cert.cert -signkey my.CA.key -CA my.CA.cert -CAkey my.CA.key -CAcreateserial -days 365 </verb> ´Ü°è ¼Â - 'client.cert.cert' ÆÄÀÏÀ» ¿äûÇÏ´ÂÀÌ¿¡°Ô ³Ñ°ÜÁÖ¶ó. Apache-SSLÀº ´ÙÀ½À» Ãß°¡ ÇÔÀ¸·Î½á ÀÌ Áõ¸í¼­ÀÇ È®ÀÎÀÌ °¡´ÉÇÏ´Ù. <verb> SSLCACertificateFile /path/to/certs/my.CA.cert SSLVerifyClient 2 </verb> <sect1>³» CGI·Î ¾î¶»°Ô Ŭ¶óÀ̾ðÆ® Áõ¸í¿¡ Á¢±ÙÇϴ°¡? <p> ¸±¸®Áî apache_1.3.2+ssl_1.27 À̻󿡼­´Â ´ÙÀ½ Áö½ÃÀÚ¸¦ »ç¿ëÇÑ´Ù. <verb> SSLExportClientCertificates </verb> ÀÌ°ÍÀº Ŭ¶óÀ̾ðÆ® Áõ¸íÀÇ ³»¿ëÀ» Æ÷ÇÔÇϴ ȯ°æº¯¼ö¸¦ ¸¸µé°Ô µÈ´Ù. ´õ ÀÚ¼¼ÇÑ °ÍÀº, docs ¼½¼ÇÀÇ <htmlurl url="http://www.apache-ssl.org/docs.html#SSLExportClientCertificates" name="SSLExportClientCertificates">¸¦ º¸¶ó. ÀÛµ¿ ¿¹Á¦µµ ÀÖ´Ù: <htmlurl url="https://www.apache-ssl.org/cgi/cert-export" name="https://www.apache-ssl.org/cgi/cert-export"> <sect1>FontPage98 Extensions with Apache-SSLÀº ¾î¶»°Ô ¼³Ä¡Çϳª? <p> Bertrand Renuart°¡ ÀÌ¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀ» <htmlurl url="http://www.itma.lu/howto/apache" name="http://www.itma.lu/howto/apache">¿¡¼­ ±â¼úÇÏ°í ÀÖ´Ù. <sect1>Verisign cert¸¦ ¼³Ä¡ÇÒ ¶§, ¿Ö "getca", "getverisign"À» ãÀ» ¼ö ¾ø´Â°¡? <p> Apache-SSL ¸í·É¿¡¼­ VerisignÀº Áö¿øµÇÁö ¾Ê±â ¶§¹®ÀÌ´Ù. »ç¿ëÇÏ°í ½Í´Ù¸é Stronghold(»ó¿ë ¾ÆÆÄÄ¡ ±â¹Ý SSL Áö¿ø ¼­¹ö)¸¦ »ç¿ëÇضó. ´ç½ÅÀÌ ÇØ¾ß ÇÒ ÀÏÀº ´ÜÁö Áõ¸íÀ» ÆÄÀÏ¿¡ ÀúÀåÇÏ°í ±× À̸§À» SSLCertificateFileÁö½ÃÀÚ¿¡ ³Ñ°ÜÁÖ¸é µÈ´Ù. Å°ÆÄÀϵµ ³Ñ°Ü¾ß ÇÏ´Â°É ±â¾ïÇضó. <sect1>ÀϹÝÀûÀÎ ÄÄÆÄÀÏ ¿¡·¯ <p> <verb> gcc -c -I../os/unix -I../include -I/usr/local/ssl/include -funsigned-char -DTARGET=\"httpsd\" -DAPACHE_SSL `../apaci` -DAPACHE_SSL buff.c buff.c: In function `ap_read': buff.c:259: structure has no member named `stats' buff.c:267: structure has no member named `stats' buff.c:268: structure has no member named `stats' buff.c:269: structure has no member named `stats' buff.c:271: structure has no member named `stats' buff.c: In function `ap_write': buff.c:346: warning: passing arg 2 of `SSL_write' discards `const' from pointer target type *** Error code 1 </verb> <htmlurl url="https://www.openssl.org" name="OpenSSL">À» ¾÷±×·¹À̵å ÇØ¾ß ÇÑ´Ù. <sect1>Y2K ¹®Á¦´Â? <p> Apache-SSL ÇϺÎÀÇ ÄÄÆ÷³ÍÆ®¿¡´Â ³¯Â¥°ü·Ã 󸮰¡ ¾ø¾î¼­ ´ç½Å ½Ã½ºÅÛÀÇ ÀüüÀûÀÎ ÄÄÇöóÀ̾ð½º(compliance)¿£ ¿µÇâÀ» ¹ÞÁö ¾Ê´Â´Ù. ¸ÞÀÎ ÄÄÆ÷³ÍÆ®ÀÎ ¾ÆÆÄÄ¡´Â Y2K¿¡ ´ëÇؼ­ <htmlurl url="http://www.apache.org/docs/misc/FAQ.html#year2000" name="ÀÌ·¸°Ô"> À̾߱â ÇÏ°í ÀÖ´Ù. ¶ÇÇÑ ´ç½ÅÀº OS, Çϵå¿þ¾î¿Í ´Ù¸¥ ¸ðµâÀ» °Ë»çÇØ¾ß ÇÑ´Ù. <!-- ¸ÞÀϸµ ¸®½ºÆ® --> <sect>¸ÞÀϸµ ¸®½ºÆ® <p> µÎ Apache-SSL ¸ÞÀϸµ ¸®½ºÆ®°¡ ÀÖ´Ù. Apache-SSL Ä¿¹Â´ÏƼ(community)·ÎºÎÅÍ ÀϹÝÀûÀÎ µµ¿òÀ̳ª Áö¿øÀ» ¿øÇϸé, <htmlurl url="mailto:apache-ssl-help@lists.aldigital.co.uk?SUBJECT=anyoldthing" name="apache-ssl-help@lists.aldigital.co.uk">·Î ºó ¸ÞÀÏÀ» º¸³»¶ó. ÀÌ°ÍÀº Áú¹®¿¡ ´ëÇÑ ÇØ´äÀ» ¾ò´Â °¡Àå ºü¸¥ °æ·Î ÀÏ °ÍÀÌ´Ù. ±×·¯³ª, Áú¹®À» Æ÷½ºÆÃÇϱâÀü¿¡ <htmlurl url="http://www.lists.aldigital.co.uk/" name="archive">¿¡ ´äÀÌ ÀÖ´ÂÁöºÎÅÍ È®ÀÎÇضó. <p> ´Ü¼øÈ÷ ÃÖ½ÅÀ¸·Î À¯ÁöÇÏ°í »õ ¸±¸®Áî¿Í Áß¿äÇÑ ¹ßÇ¥¸¦ µè±â¸¸À» ¿øÇÑ´Ù¸é, <htmlurl url="mailto:apache-sslannounce-help@lists.aldigital.co.uk?SUBJECT=sameoldsameold" name="apache-sslannounce-help@lists.aldigital.co.uk">°¡ ÀÖ´Ù. <!-- Apache-SSLÀº mod_sslÀÌ ¾Æ´Ï´Ù. --> <sect>Apache-SSLÀº mod_sslÀÌ ¾Æ´Ï´Ù!! <p> There appears to be some confusion regarding Apache-SSL and mod_ssl. To set the record straight: mod_ssl is not a replacement for Apache-SSL - it is an alternative, in the same way that Apache is an alternative to Netscape/Microsoft servers, or Linux is an alternative to FreeBSD. It is a matter of personal choice as to which you run. mod_ssl is what is known as a 'split' - i.e. it was originally derived from Apache-SSL, but has been extensively redeveloped so the code now bears little relation to the original. <P>Apache-SSL continues to be developed and maintained, our main focus being on reliability, security and performance, rather than features and bells and whistles. I hope this makes things clear. <em>(Adam Laurie)</em></> <!-- ¸µÅ©µé --> <sect>¸µÅ©µé <p> °ü·Ã À¥ ÀÚ¿øµé: <itemize> <item><htmlurl url="http://www.cs.auckland.ac.nz/~pgut001/links.html" name="Peter Gutmann's Security and Encryption-related Resources and Links"> <p><item><htmlurl url="http://www.refcards.com/" name="Andrew Ford's Apache/Apache-SSL Quick Reference Card"> </itemize> <!-- ¹Ì·¯ À¥»çÀÌÆ® --> <sect>¹Ì·¯ À¥»çÀÌÆ® <p> <itemize> <item><htmlurl url="http://www.infoscience.co.jp/" name="Infoscience">, Japan (Japanese language), at <htmlurl url="http://japache.infoscience.co.jp/Apache-SSL/Apache-SSL.html" name="japache.infoscience.co.jp/Apache-SSL/Apache-SSL.html">. <p><item><htmlurl url="http://www.bilkent.edu.tr/" name="Bilkent University">, Ankara, Turkey, at <htmlurl url="http://sunsite.bcc.bilkent.edu.tr/pub/infosystems/apache-ssl/Index.html" name="http://sunsite.bcc.bilkent.edu.tr/pub/infosystems/apache-ssl/Index.html">. <p><item><htmlurl url="http://www.raver.net/" name="raver.net">, Canada, at <htmlurl url="http://apache-ssl.raver.net/" name="http://apache-ssl.raver.net/">. <p><item><htmlurl url="http://www.algroup.co.uk/" name="algroup">, USA, at <htmlurl url="http://lynx.usa.algroup.co.uk/mirrors/www.apache-ssl.org/" name="http://lynx.usa.algroup.co.uk/mirrors/www.apache-ssl.org/">. <p><item><htmlurl url="http://www.instinct.org/" name="instinct.org">, Czech Republic, at <htmlurl url="http://www.instinct.org/apache-ssl/" name="http://www.instinct.org/apache-ssl/"> <p><item><htmlurl url="http://www.gin.cz/" name="gin.cz">, CZ, at <htmlurl url="http://apache-ssl.gin.cz/" name="http://apache-ssl.gin.cz/"> </itemize> <!-- Credits --> <sect>Å©·¹µðÆ®(^^;) <p> Apache-SSL was written by <htmlurl url="http://www.apache-ssl.org/ben.html" name="Ben Laurie">, who is also an <htmlurl url="http://www.apache.org/contributors/index.html#laurie" name="Apache core team member">, and an <htmlurl url="http://www.openssl.org/about/" name="OpenSSL core team member">. <p> The development of Apache-SSL is sponsored by <htmlurl url="http://www.algroup.co.uk/" name="A.L. Digital Ltd.">, and this site is hosted by tem. <p> Info on FTP mirror sites, CAs, Links, etc., should be send to: <htmlurl url="mailto:adam@algroup.co.uk,ben@algroup.co.uk?SUBJECT=Apache-SSL Web Site" name="The Web Slaves">. <p> Apache-SSL graphics courtesy of <htmlurl url="mailto:jamie@aldigital.co.uk" name="Jamie Harrison"> and <htmlurl url="http://www.wownet.org/" name="The WoW Foundation">, based on the original feather by <htmlurl url="http://www.apache.org/contributors/#terbush" name="Randy Terbush">. Feel free to replicate. <!-- Team A.L. Digital & Apache SSL --> <sect>Team A.L. Digital & Apache SSL <p> A.L. Digital Ltd. participate in the Distributed Net encryption cracking efforts, as do many of our friends. To see how our team is doing, click the team logo above. To read more about the project, click on the banner above. To join our team, affiliate yourself with team no. 5209. For your personal privacy, the team membership listing is not open to the public, and we promise not to use it ourselves. For anything. </article>