IT/DevOps

[WAS] jboss eap 7.4 ssl ์ ์šฉ (feat. openssl)

์•Œ ์ˆ˜ ์—†๋Š” ์‚ฌ์šฉ์ž 2023. 12. 30.

jboss eap 7.4๋ฒ„์ „์—์„œ openssl์„ ์ ์šฉํ•œ ๊ฒฝํ—˜์„ ๊ธฐ๋กํ•œ๋‹ค.

openssl ํ‚ค/์ธ์ฆ์„œ ์ƒ์„ฑ

์‚ฌ์ „์— openssl ํŒจํ‚ค์ง€๋Š” ์„ค์น˜๋˜์–ด ์žˆ์–ด์•ผ ํ•จ

openssl req -newkey rsa:2048 -nodes -keyout server.key -x509 -days 365 -out server.crt

java ์ „์šฉ ์ธ์ฆ์„œ๋กœ ๋ณ€ํ™˜ ์ž‘์—…

openssl pkcs12 -export -in server.crt -inkey server.key -out keystore.p12 -name key

server.crt, server.key๋กœ keystore.p12๋ฅผ ์ƒ์„ฑ

jks๋กœ ๋ณ€ํ™˜

keytool -importkeystore -srckeystore keystore.p12 -srcstoretype PKCS12 -destkeystore keystore.jks -deststoretype JKS

jboss ์„ค์ •ํŒŒ์ผ(standalone.xml)์— keystore ์œ„์น˜์™€ ์ •๋ณด ์„ค์ •

<ssl></ssl>ํƒœ๊ทธ์— ์ž‘์„ฑ

์ƒ๋Œ€๊ฒฝ๋กœ(relative-to)๊ฐ€ jboss.server.config.dir(jboss-eap-7.4/standalone/configuration)๋ผ์„œ configuration ํ•˜์œ„์— ssl์ด๋ผ๋Š” ํด๋”๋ฅผ ๋งŒ๋“ค๊ณ  ๊ฑฐ๊ธฐ์— ์ธ์ฆ์„œ๋ฅผ ๋„ฃ์—ˆ๋‹ค.

https port ํ™•์ธ

https ๋ฐฉํ™”๋ฒฝ ํ•ด์ œ

sudo firewall-cmd --permanent --zone=public --add-port=8443/tcp
sudo firewall-cmd --reload

jboss ์žฌ๊ธฐ๋™ ํ›„ https ํ˜ธ์ถœ

์ธ์ฆ์„œ๊ฐ€ ์˜ฌ๋ฐ”๋ฅด์ง€ ์•Š์•„์„œ ๊ทธ๋ ‡์ง€ ์ œ๋Œ€๋กœ ํ˜ธ์ถœ ๋˜์—ˆ์Œ

์ง€๊ธˆ์€ ์ •๋ฆฌ๋œ ๊ฑธ ์ ์–ด์„œ ์–ผ๋งˆ ์•ˆ๊ฑธ๋ ธ์ง€๋งŒ ์ฒ˜์Œ ์‚ฝ์งˆ ํ•  ๋• ๊ฝค ์˜ค๋ž˜ ๊ฑธ๋ ธ๋˜ ๊ธฐ์–ต์ด ๋‚จ(jboss๋Š” ๊ตฌ๊ธ€ ์ž๋ฃŒ๋„ ๋ณ„๋กœ ์—†์Œ)

๋‹ค์Œ์„ ์œ„ํ•ด์„œ ์ฒ˜์Œ ์‚ฝ์งˆ ๊ฒฝํ—˜์€ ๊ผญ ๊ธฐ๋ก์„ ํ•ด๋†”์•ผ ํ•œ๋‹ค.


๊ฐœ์ธ ์Šคํ„ฐ๋”” ๊ธฐ๋ก์„ ๋ฉ”๋ชจํ•˜๋Š” ๊ณต๊ฐ„์ด๋ผ ํ‹€๋ฆฐ์ ์ด ์žˆ์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

ํ‹€๋ฆฐ ์  ์žˆ์„ ๊ฒฝ์šฐ ๋Œ“๊ธ€ ๋ถ€ํƒ๋“œ๋ฆฝ๋‹ˆ๋‹ค.

 

[linux] linux jboss eap 7.4 install, setting/ deploy

๋ฆฌ๋ˆ…์Šค์— jboss๋ฅผ ์„ค์น˜ํ•ด์„œ ์›น ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ฐฐํฌํ•œ ๊ฒฝํ—˜์„ ๊ธฐ๋กํ•œ๋‹ค. ์„ค์น˜ํ™˜๊ฒฝ: redhat 8.8 64 bit ์„ค์น˜๊ฒฝ๋กœ: /home/๊ณ„์ •/app ํ•˜์œ„์„ค์น˜๋ชจ๋“œ: standalonejboss๋Š” standalone, domain ๋ชจ๋“œ๊ฐ€ ์žˆ๋Š”๋ฐ standalone๋ชจ๋“œ๋Š” ๋‹จ

yaga.tistory.com

 

 

 

[DevOps] CentOS 8 Jenkins CI, CD ํ™˜๊ฒฝ ๊ตฌ์ถ•(feat. eGovCI)

๋ชฉ์ฐจ์ด๋ฒˆ์—” ์ „์ž์ •๋ถ€ํ”„๋ ˆ์ž„์›Œํฌ์˜ ์„œ๋ฒ„์šฉ ๊ฐœ๋ฐœํ™˜๊ฒฝ์„ ์ด์šฉํ•ด์„œ CI, CD๋ฅผ ๊ตฌ์ถ•ํ–ˆ๋‹ค.๋‹ค์Œ์—” ์ €๋ฒˆ์— ์„ค์น˜ํ•œ GitLab๊ณผ ์ƒˆ๋กœ ์„ค์น˜ํ•œ Jenkins๋กœ ์ฒ˜์Œ๋ถ€ํ„ฐ ์—ฐ๋™ํ•˜๋Š” ๊ฒƒ๋„ ํฌ์ŠคํŒ… ์˜ˆ์ •์ด๋‹ค. [DevOps] CentOS 8 Jen

yaga.tistory.com

 

 

[DevOps] CentOS7 ์„ค์น˜๋ถ€ํ„ฐ jdk, mysql, tomcat ์—ฐ๋™๊นŒ์ง€ ๊ณผ์ •

CentOS7 ์„ค์น˜๋ถ€ํ„ฐ jdk, mysql, tomcat ์„ค์น˜ ๋ฐ ๊ฐ„๋‹จํ•œ ์—ฐ๋™๊ณผ์ •์„ ๊ฐ„๋žตํžˆ ํฌ์ŠคํŒ…ํ•œ๋‹ค.CentOS ๋ฏธ๋Ÿฌ ์‚ฌ์ดํŠธ์—์„œ isovํŒŒ์ผ ๋‹ค์šด๋กœ๋“œํ•œ๋‹ค.(์—ฌ๊ธฐ์„  GUIํ™˜๊ฒฝ์œผ๋กœ ์„ค์น˜ํ•˜๊ธฐ ์œ„ํ•ด DVD ์„ ํƒ)CentOS7 ์„ค์น˜๋ฆฌ๋ˆ…์Šค ๋ถ€ํŒ…๋””

yaga.tistory.com

๋Œ“๊ธ€