ÏûÎþ
ÐÜ É?Ì-ÄÒ ÓæÍÕÖ× É?Ï?ÐÜ ÎÖÄåÄßÄé.
ÓæÁéÏÅ Ê?ÀöÅØ ÃËÏûÐÊ ÏÅÎþ É?Ì-È? Ò?Àý×ßÌÌÏô.
ÐÜ É?Ì-ÄÒ Ð? Ì-ÊåÍÊ ÐßÉíÏÅ Äû×á, Ö?Ø? ÎÖÖÔÔÅÏÝ À?ÇÓÅØ, ÏûÎþÅùÐË
Ñ?Ð××áÄé. À? ÀÃÃôÏÅ Äû×á ÐêÌÌ×á Ñ?ÊÈÄÒ ÈÅÕ?È? Ò?Àý×ßÆ?.
(Ï?Ñæ; ×?Ð÷ ÄìÎþÐ× Ì?Ì-ÄÒ ×áÁë Ì?Ì-ÀÅ ÎÖÄßÆ?, ÏÅÉ?Ðê
Ì?Ì-ÐäÄßÄé. ÏûÎþÉ?Ï?×?ÄÒ Ï?ÁòÈ?
Ò?Àý×ßÁö ÉéÆ?ÄßÄé.)
- Ñ?ÁéÑ?Îþ (Access Control)
- ÃçÖ?Ï? ÏÅÏ?ÏÅ Äû×á Ñ?ÁéÐË Ñ?×á. ÎÖÖÔÔÅÏÅÌ-ÄÒ ÊÈÕû Ö?Ñ?
URLÐ× Ñ?ÁéÐË Ñ?×á×ßÁòÐ?×è Ë÷Ïû×áÄé.
Ò?Àý: ÐÞÑ?, Á××áÊÞÏ?, Ñ?ÁéÑ?Îþ
- ÎÛÀýÈ?Ñ? (Algorithm)
- Ð?×á×á ÄìÀøÈ? ÀÕÓÔ É?Ñ?È? ×?ÄÒ ÈýØ?×á À?ÍÔ Ø?ÐÊ ÁäÔ?Åù.
ÎßØ?Ø-È? Ð?×á ÎÛÀýÈ?Ñ?ÐË ÊÈÕû ÎßØ?Áò(Ciphers)Æ?Àý
ÊÞÈ?Äé.
- APache eXtension Tool
(apxs)
- È?Åò
(module) ÌâÍÊÈ? ÅÏÐ?À?Ð?ÀÄÓÌ (DSO)ÇÞ
ÔÔÖÔÐß×ßÀý ÎÖÖÔÔÅ Ð?Ì-É?ÏÅ ÌÃÔÅ×ßÄÒ ÐëÎ?ÐË ÅÍÄÒ perl
ÍÊÕ?ÈÃÖ?.
Ò?Àý: Manpage:
apxs
- ÐÞÑ? (Authentication)
- Ì-É?, Õ?Æ?ÐÜÎ?Ö?, Ë÷ÏûÐê Åþ ÃçÖ?Ï? Í×ÓÌÏÅ Äû×á
Ø?ÐÞ.
Ò?Àý: ÐÞÑ?, Á××áÊÞÏ?,
Ñ?ÁéÑ?Îþ
- ÐÞÑ?Ì- (Certificate)
- Ì-É?Ã? Õ?Æ?ÐÜÎ?Ö?ÏÝ ÀÀÐÊ ÃçÖ?Ï? Í×ÓÌÈ? ÐÞÑ?×ßÄÒ ÐêÇñ.
ÐÞÑ?Ì-ÏÅÄÒ ÌâÐ?Ðê (subjectÆ?Àý ×ä), Ì-Èý ÐÞÑ?ÁòÀ? (Certificate
Authority) (issuerÆ?Àý ×ä), ÌâÐ?ÐêÐ× À?ÀÃÕÀ, CAÀÅ ÈÈÅ÷ Ì-Èý ÅþÏÅ Äû×á
X.509 Ñ?ÊÈÀÅ ÐæÄé. ÃçÖ?Ï? Í×ÓÌÄÒ CA ÐÞÑ?Ì-È? Ë÷Ïû×ßÏ?
Ì-ÈýÐË ÀÛË÷×áÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- ÐÞÑ? Ì-Èý ÏôÓË (Certificate
Signing Request, CSR)
- ÐÞÑ?ÁòÀ? (Certification
Authority)ÏÅ Ñ?Óò×ßÏ? CA ÐÞÑ?Ì- (Certificate)Ð×
ÀÃÐÞÕÀ (Private Key)ÇÞ Ì-ÈýÅÙ ÎÖÑ?
Ì-ÈýÅ×Ñ?ÎÚÐÊ ÐÞÑ?Ì-. CSRÐÜ Ì-ÈýÅ×Èù
Í×Ñ? ÐÞÑ?Ì-ÀÅ ÅØÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- ÐÞÑ?ÁòÀ? (Certification
Authority, CA)
- ÎØÐ?×á ÉöÉÐÈÇÞ
ÃçÖ?Ï? Í×ÓÌÏÅ Äû×á ÐÞÑ?ÐË Ì-Èý×ßÄÒ ÍÕÇê×ßÄÒ Ñ?ËÿÐê. ÄéÈ? ÃçÖ?Ï?
Í×ÓÌÅùÐÊ Ì-ÈýÐÈÇÞ CAÀÅ ÐÞÑ?Ì- ÌâÐ?ÐêÈ? ÐÞÑ?×ïÄÒÑ? Ø?ÐÞ×â Ì?
ÐæÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- ÎßØ?Áò (Cipher)
- ÐêÇñÈ?
ÎßØ?Ø-×ßÄÒ ÎÛÀýÈ?Ñ?ÐÜÃ? ÍÓÍÊÕë. ÏÉÈ? ÅùÎþ, DES, IDEA, RC4 ÅþÐÜ ÐæÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- ÎßØ?É? (Ciphertext)
- Ö?É? (Plaintext)ÐË ÎßØ?Áò
(Cipher)ÇÞ ÓÃÈ?×á ÀñÀ?.
Ò?Àý: SSL/TLS
ÎßØ?Ø-
- À?Õû ÀäÐÜÖ?Ï?ÐÜ ÐÞÕÝÖôÐÜÍÊ
(Common Gateway Interface, CGI)
- ÏìÊÞ ×ÑÇÞÁçÇ?ÐÜ ÏôÓËÐË Ì-ÊåÍÊ×â Ì? ÐæÅÅÇß ÈÈÅ÷ Ð?Ì-É?ÏÝ ÏìÊÞ
×ÑÇÞÁçÇ? Ë÷ÐÜÐ× ÐÞÕÝÖôÐÜÍÊ ×?Ñè. ÐÞÕÝÖôÐÜÍÊÄÒ Ï?ÇÅ NCSAÀÅ
Ñ?Ð××ïÑ?ÈÈ, RFC
×ÑÇÞÑ?Ö?ÐÜÁòÅÅ ×ßÄé.
Ò?Àý: CGIÇÞ ÅÏÐ? ÖôÐÜÑ? ËÌÊ
- ÌÃÑ? Ñ?ÍÓÎþ (Configuration
Directive)
- Ò?Àý: Ñ?ÍÓÎþ
- ÌÃÑ?ÖÔÐß (Configuration File)
- ÎÖÖÔÔÅÈ? ÌÃÑ?×ßÄÒ Ñ?ÍÓÎþ (directive)È?
Ð?ÎþÅà ÕèÍÊÖ?ÖÔÐß.
Ò?Àý: ÌÃÑ?ÖÔÐß
- CONNECT
- HTTPÈ? Õû×è ÐêÇñØõÈ?ÐË ×ÑÇßÍÓ×ßÄÒ HTTP ÈîÍñÅõ
(method). SSL ×ÑÇÞÕôÔí Åþ ÄéÈ? ×ÑÇÞÕôÔíÐË À?ÍÞÁòÐ?×è Ë÷Ïû×áÄé.
- Ë÷ÏûÐõÌâ (Context)
- ÌÃÑ?ÖÔÐß (configuration file)ÏÅÌ-
Ö?Ñ? Ñ?ÍÓÎþ (directive)È? Ë÷Ïû×â Ì?
ÐæÄÒ ÐõÌâ.
Ò?Àý: ÎÖÖÔÔÅ Ñ?ÍÓÎþÈ? ÌÃÈý×ßÄÒÅ?
Ë÷Ïû×á ÏûÎþÑ?Ð×
- Ð?ÐêÌ-Èý (Digital Signature)
- ÐÞÑ?Ì-Ã? ÄéÈ? ÖÔÐßÐË ÀÛË÷×ßÄÒ ÎßØ?Ø-ÅØ É?ÐêÅù. ÐÞÑ?ÁòÀ? (Certification
Authority)ÐÊ ÐÞÑ?Ì- (Certificate)ÏÅ Ö?×äÅØ
À?ÀÃÕÀ (Public Key)È? ×èÍ?×á ÀñÀ?È? ÐêÍÕÐ×
ÀÃÐÞÕÀ (Private Key)ÇÞ ÎßØ?Ø-×ßÏ? Ì-ÈýÐË ÈÈÅ÷Äé.
ÏÐÑ? CAÐ× À?ÀÃÕÀÈÈÐÜ Ì-ÈýÐË ×? Ì? ÐæÁòÆ?É?ÏÅ, CAÀÅ ÐÞÑ?Ì-
(Certificate)È? ÀÅÑ? ÃçÖ?Ï? Í×ÓÌÈ? ÐÞÑ?×ïÐÍÐË Ñ?Èý×â
Ì? ÐæÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- Ñ?ÍÓÎþ (Directive)
- ÎÖÖÔÔÅÐ×
Ï?Ç? ÁòÄÙÐË ÑÆÐ×ßÄÒ ÌÃÑ? ÈýÇÙÎþ. Ñ?ÍÓÎþÄÒ ÌÃÑ?ÖÔÐß (Configuration File)ÏÅÌ-
Ë÷Ïû×áÄé.
Ò?Àý: Ñ?ÍÓÎþ ÈåÇß
- ÅÏÐ?À?Ð?ÀÄÓÌ (Dynamic Shared
Object) (DSO)
- ÎÖÖÔÔÅ httpd
Í××ðÖÔÐßÀ? ÊÀÅÅÇÞ ÔÔÖÔÐß×ßÏ? ×ÚÏô×âÆ? ÐàÎþÅùÐß Ì? ÐæÄÒ È?Åò (Module).
Ò?Àý: ÅÏÐ?À?Ð?ÀÄÓÌ Ñ?Ï?
- Ø?ÀöÊ?Ì? (Environment Variable)
(env-variable)
- Ñ?ÊÈÈ? Ð?Ðõ×ßÀý ×ÑÇÞÁçÇ?À?ÏÅ ÕûÍÕÐË Ð?×è ÏþÏÅÓÌÑ? Í?ÐÜ À?È?×ßÄÒ
Ê?Ì?. ÎÖÖÔÔÅÏÅÅÅ Ø?ÀöÊ?Ì?Æ?ÄÒ ÃËÊÞ Ê?Ì?ÀÅ ÐæÑ?ÈÈ, Í? Ø?ÀöÐÜ
ÎÖÄßÆ? ÎÖÖÔÔÅ ÃËÊÞÏÅ Ð?ÐõÅØÄé.
Ò?Àý: ÎÖÖÔÔÅÐ× Ø?ÀöÊ?Ì?
- Ì?ÓòÏû (Export-Crippled)
- ÉÜÁÉ Ì?ÓòÀ?È?ÁäÑ?(Export Administration Regulations, EAR)È?
ÑèÌ?×ßÁòÐ?×è ÎßØ?(ÏÝ ÊÈÎØ)Ð× À-ÅÅÈ? ÃÇÓó. Ì?ÓòÏû ÎßØ?Ø-
Ìâ×ÑÖ?Ï?ÎþÄÒ ÕÀ Õ?ÁòÀÅ ÐëÀä Ñ?×áÅ×Îþ, ÎßØ?É?
(Ciphertext)ÐË É?ÍÔ×á ÉöÉ(brute force)ÐÈÇÞ ×? Ì? ÐæÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø- (SSL/TLS Encryption)
- ×ÚÕÝ (Filter)
- Ì-É?ÀÅ ÊÈÃËÀÕÃ? ÉîÄÒ ÐêÇñÈ? ÓÃÈ?×ßÄÒ À?Ñ?. ÐäÇÒ×ÚÕÝÄÒ
Õ?Æ?ÐÜÎ?Ö?ÀÅ Ì-É?ÇÞ ÊÈÃËÄÒ ÐêÇñÈ? ÓÃÈ?×ßÀý, ÓòÇÒ×ÚÕÝÄÒ Ì-É?ÀÅ
Õ?Æ?ÐÜÎ?Ö?ÏÅÀä ÊÈÃÎ É?Ì-È? ÓÃÈ?×áÄé. ÏÉÈ? ÅùÎþ,
INCLUDES
ÓòÇÒ×ÚÕÝÄÒ É?Ì-Ð× Server
Side IncludesÈ? ÓÃÈ?×áÄé.
Ò?Àý: ×ÚÕÝ
- ÏßÐ?×á ÅÅÈîÐÞÈý
(Fully-Qualified Domain-Name) (FQDN)
- IP ÑæÌâÏÅ ÄûÐÐ×ßÄÒ, Ø?ÍÊÖ?ÈýÀ? ÅÅÈîÐÞÈýÐÈÇÞ ÁÈÌÊÅØ ÃçÖ?Ï?
Í×ÓÌÐ× Ð?Ðß×á ÐÜÈ?. ÏÉÈ? ÅùÎþ,
www
ÀÅ Ø?ÍÊÖ?ÈýÐÜÀý
example.com
ÐÜ ÅÅÈîÐÞÈýÐßÆ?,
www.example.com
ÐÊ ÏßÐ?×á ÅÅÈîÐÞÈýÐÜÄé.
- ×êÅùÇ? (Handler)
- ÖÔÐßÐË ÏôÓË×âÆ? Ì?×ð×ßÄÒ ÐëÎ?ÏÅ Äû×á ÎÖÖÔÔÅ ÃËÊÞ ×?×?.
ÐßÉíÐ?ÐÈÇÞ ÖÔÐßÐÊ ÖÔÐß ÑÎÇ?ÏÅ Å?Æ? ÎßÉ?Ð?ÐÞ ×êÅùÇ?È? ÀÅÑ?Äé.
ÊÈÕû È?Å÷ ÖÔÐßÐÊ Ì-É?ÀÅ À?ÄìØ? Ì-ÊåÍÊ×ßÑ?ÈÈ, ÎþÆ ÖÔÐß ÑÎÇ?ÄÒ
Å?ÇÞ "ÓÃÈ?ÅØÄé(handled)". ÏÉÈ? ÅùÎþ,
cgi-script
×êÅùÇ?ÄÒ CGIÇÞ ÓÃÈ?×â ÖÔÐßÐË Ñ?Ñ?×áÄé.
Ò?Àý: ÎÖÖÔÔÅÏÅÌ- ×êÅùÇ? Ë÷Ïû
- ×üÄ? (Header)
- HTTP ÏôÓËÀ? ÐÐÄôÏÅÌ- Í×Ñ? ÃËÏû ÐÜÐ?ÏÅ
ÊÈÃËÄÒ ÊÞÊàÐÈÇÞ ÃËÏûÐË ÌÃÈý×ßÄÒ Ñ?ÊÈÀÅ ÐæÄé.
- .htaccess
- Ð?É?Ì-Åù ÎØÏÅ ÐæÄÒ
ÌÃÑ?ÖÔÐß (configuration file)ÇÞ,
ÌÃÑ? Ñ?ÍÓÎþ (directive)È? ÐêÍÕÐÜ Ð?ÔÅ×á
Å?ÇÊÕôÈ?ÏÝ È?Å÷ ×ßÐ?Å?ÇÊÕôÈ?ÏÅ Ð?Ïû×áÄé. ÐÜÈ?À? ÄîÈ? ÐÜ
ÖÔÐßÏÅÌ-ÄÒ ÄìÌ?×á Ñ?ÁéÑ?Îþ Ñ?ÍÓÎþÏìÏÅ ÀÕÐ× È?Å÷ ÑÎÇ?Ð× Ñ?ÍÓÎþÈ?
Ë÷Ïû×â Ì? ÐæÄé.
Ò?Àý: ÌÃÑ?ÖÔÐß
- httpd.conf
- ÎÖÖÔÔÅ Ñæ ÌÃÑ?ÖÔÐß (configuration
file). ÁòÊËÐ?ÐÞ Ð?ÔÅÄÒ
/usr/local/apache2/conf/httpd.conf
ÐÜÑ?ÈÈ, Í××ð×âÆ?
Ø?ÐÊ ÔÔÖÔÐßÆ? ÌÃÑ?ÐÈÇÞ Ê?Àö×â Ì? ÐæÄé.
Ò?Àý: ÌÃÑ?ÖÔÐß
- HyperText Transfer
Protocol (HTTP)
- Ï?ÅõÏÝÐÜÅõÐ?ÏÅÌ- Ë÷Ïû×ßÄÒ ×?Ñè Ð?Ìë ×ÑÇÞÕôÔí. ÎÖÖÔÔÅÄÒ
RFC 2616ÏÅÌ-
Ñ?Ð××á HTTP/1.1ÐÜÆ?ÄÒ ×ÑÇÞÕôÔíÐ× 1.1 É?Ð?ÐË ÁÈ×?×áÄé.
- HTTPS
- Ï?ÅõØ-ÐÜÅõÐ?Ð× ×?Ñè ÎßØ?ÕûÍÕ ÉöÉ, HyperText Transfer
Protocol (Secure). Ë÷Í× ÉèÄìÏÅ SSLÐË
Ë÷Ïû×á HTTPÐÜÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- ÈîÍñÅõ (Method)
- Õ?Æ?ÐÜÎ?Ö?ÀÅ
ÊÈÃËÄÒ HTTP ÏôÓËÑéÐÜ
ÐêÏ?ÏÅ Ì?×ð×ßÅÅÇß Ñ?ÍÓ×á ×ðÅÏ. HTTP ÈîÍñÅõÏÅÄÒ
GET
,
POST
, PUT
ÅþÐÜ ÐæÄé.
- ÈîÍÓÑ? ÏôÎð (Message Digest)
- ÈîÍÓÑ? ÃËÏûÐÜ Ð?ÌëÑï Ê?ÀöÅ×Ñ? ÎÚÎâÐÍÐË Ñ?Èý×ßÁòÐ?×á
ÈîÍÓÑ?Ð× ×èÍ?.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- MIME-type
- Ð?Ìë×â É?Ì-Ð×
ÑÎÇ?È? ÌÃÈý×ßÄÒ ÉöÍÔ. Multipurpose Internet Mail Extensions
×?ÍÔÐË Ê?ÇÑÏäÁòÆ?É?ÏÅ ÐÜÇÈÀä ÐÜÈ?ÐË Ñ?Î?Äé. ÍÍÇÅÍ?È? Ë÷ÐÜÏÅ
Åà major typeÀ? minor typeÐÈÇÞ ÐÜÇ÷ÎþÑ?Äé. ÏÉÈ? ÅùÈù,
text/html
, image/gif
,
application/octet-stream
ÅþÐÜÄé. MIME-typeÐÊ HTTPÐ×
Content-Type
×üÄ? (header)ÇÞ
Ð?Ìë×áÄé.
Ò?Àý: mod_mime
- È?Åò (Module)
- ×ÑÇÞÁçÇ?Ð× ÅÆÈÃÅØ
ÊÞÊà. ÈÉÐÊ ÎÖÖÔÔÅ ÁòÄÙÐÊ Ä÷ÍÕÐÜ Ö?×äÏ?ÊÞÈ? ÌÁÕÓ×â Ì? ÐæÄÒ È?ÅòÏÅ
ÅùÎþÐæÄé. ÎÖÖÔÔÅ httpd Í××ðÖÔÐßÀ? ÀÀÐÜ ÔÔÖÔÐß×á È?ÅòÐË Ñ?Ð?
È?ÅòÐÜÆ?Àý ×ßÈ÷, Å?ÇÞ ÊàÈ?Å×Îþ Í××ðÍÓ ÌÁÕÓÐ?ÐÈÇÞ ÐàÎþÅùÐß
Ì? ÐæÄÒ È?ÅòÐË ÅÏÐ? È?Åò Ø?ÐÊ DSOÆ?Àý
×áÄé. ÁòÊËÐ?ÐÈÇÞ Ö?×ä×ßÄÒ È?ÅòÐË base È?ÅòÐÜÆ?Àý ×áÄé.
ÎÖÖÔÔÅ Ð?Ì-É? ÕÈÊÌ (tarball)À? ÀÀÐÜ
ÉøÖ?Å×Ñ?ÄÒ ÎÚÑ?ÈÈ ÎÖÖÔÔÅÏÅÄÒ ÈÉÐÊ È?ÅòÅùÐÜ ÐæÄé. ÐÜÅùÐË
Ñ?ËÿÐêÀÅ ÈÈÅ÷(third-party) È?ÅòÐÜÆ?Àý ×áÄé.
Ò?Àý: È?Åò ÈåÇß
- È?Åò ÈÆÉÌ? (Module Magic Number)
(MMN)
- È?Åò ÈÆÉÌ?ÄÒ ÎÖÖÔÔÅ ÌâÍÊÔêÅõÀÅ Ñ?Ð××á Ë?Ì?ÇÞ, È?ÅòÐ×
ÐÜÑ?Ø?Ø?ÌÊÀ? À?ÇÓÐÜ ÐæÄé. È?Åò ÈÆÉÌ?ÄÒ ÐÜÑ?Ø?Ø?ÌÊÐË Ä? ÐÜË? ÊÈÐõ×â
Ì? Î?ÅÅÇß ÎÖÖÔÔÅ ÃËÊÞ ÁÈÑÆÃ? ×äÌ? Ø?Óò, ÄéÈ? API ÐßÊÞÀÅ Ê?ÀöÅØ
ÀöÏüÏÅ ÉéÂÿÄé. MMNÐÜ Ê?×ßÈù Ñ?ËÿÐêÀÅ ÈÈÅ÷ È?ÅòÐÊ È?ÅÞ ÓæÌâ×á ÄéÍÓ
ÔÔÖÔÐßÅ×Îï ×áÄé. Ë? ÎÖÖÔÔÅ É?Ð?ÏÅ ÈÒÅÅÇß ÑÆÁí Ì?Ñ?×èÎï×â ÀöÏüÅÅ
ÐæÄé.
- OpenSSL
- SSL/TLSÈ? Ð?×á ÏÐ×ÒÌâÍÊ ÅÅÁÈ
Ò?Àý http://www.openssl.org/
- Pass Phrase
- ÀÃÐÞÕÀ ÖÔÐßÐË ÊÈØ?×ßÄÒ É?ÁÈ. ÐÞÑ?×ßÑ?ÎÚÐÊ Ë÷ÏûÐêÀÅ ÐÜ ÀÃÐÞÕÀ
ÖÔÐßÐË Ë÷Ïû×ßÏ? ÎßØ?Ø-×ßÑ? È?×ßÅÅÇß ×áÄé. ÊÈÕû ÎßØ?Áò
(Ciphers)ÀÅ Ë÷Ïû×ßÄÒ ÊåÉàÍÊÇÁ ÎßØ?/×èÅÆ ÕÀÐÜÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- Ö?É? (Plaintext)
- ÎßØ?Ø-×ßÑ? ÎÚÐÊ Áë.
- ÀÃÐÞÕÀ (Private Key)
- ÉîÐÊ
ÐêÇñÈ? ×èÅÆ×ßÀý ÊÈÃËÄÒ ÐêÇñÈ? Ì-Èý×ßÁòÐ?×á À?ÀÃÕÀ ÎßØ?Ø- (Public Key
Cryptography) ÍÓÍÊÕëÐ× ÎßØ?ÕÀ.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- ×ÑÇßÍÓ (Proxy)
- Õ?Æ?ÐÜÎ?Ö?ÏÝ
Í×Ñ? Ì-É? Ë÷ÐÜÏÅ ÐæÄÒ ÑïÀ? Ì-É?. Õ?Æ?ÐÜÎ?Ö?ÏÅÀä ÏôÓËÐË
ÉîÎÖ Í×Ñ? Ì-É?ÇÞ ÊÈÃËÀý, Í×Ñ? Ì-É?ÏÅÀäÌ- ÉîÐÊ ÐÐÄôÐË ÄéÍÓ
Õ?Æ?ÐÜÎ?Ö?ÏÅÀä ÊÈÃÍÄé. Ï?Ç? Õ?Æ?ÐÜÎ?Ö?ÀÅ ÀÀÐÊ ÃËÏûÐË ÏôÓË×ßÈù
×ÑÇßÍÓÄÒ ÈÕÉ? Ì-É?ÏÅ ÏôÓË×ßÑ?ÎÚÀý ÔÃÍ?ÏÅ Ð?ÐõÅØ ÃËÏûÐË Ë÷Ïû×ßÏ?
ÐÐÄôÍÓÀ?ÐË ÑéÐß Ì? ÐæÄé.
Ò?Àý: mod_proxy
- À?ÀÃÕÀ (Public Key)
- À?ÀÃÕÀ ÎßØ?Ø- (Public Key
Cryptography) ÍÓÍÊÕëÏÅÌ- ÕÀÐ× ÌâÐ?ÐêÏÅÀä ÊÈÃËÄÒ É?ÁÈÈ? ÎßØ?Ø-×ßÀÕÃ?
ÌâÐ?ÐêÀÅ ÈÈÅ÷ Ì-ÈýÐË ×?ÁòÐ?×á À?ÀÃÅØ ÕÀ.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- À?ÀÃÕÀ ÎßØ?Ø- (Public Key
Cryptography)
- ÎßØ?ÏÝ ×èÅÆÏÅ Ì-ÇÞ ÄéÈ? ÕÀÈ? Ë÷Ïû×ßÄÒ ÊåÄûÔ?(asymmetric)
ÎßØ?Ø- ÍÓÍÊÕëÐ× Ï?ÁÈ Éç ØÀÏû. ÎßØ?ÏÝ ×èÅÆÏÅ Ë÷Ïû×ßÄÒ ÅÞÀÃÐ× ÕÀÄÒ
ÕÀÍæ(key pair)ÐË ÐÜÇùÄé. ÊåÄûÔ? ÎßØ?Ø-Æ?ÀýÅÅ ÊÞÈ?Äé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- Ñ?Áä×?×?ÍÔ (Regular Expression) (Regex)
- ÁëÐ× ÖàÕßÐË ÁòÌ?×ßÄÒ ÉöÍÔ.
ÏÉÈ? ÅùÎþ, "É?Ðê AÇÞ ÍÓÐë×ßÄÒ È?Å÷ ÄìÎþ", "ÌÐê 10ÀÃÇÞÅØ Ð?Ø-É?Ø?",
ÍÙÑ?Îþ "ÍÀ×?ÀÅ ÅÞÀÃÐæÀý ÄûÉ?Ðê QÀÅ Î?ÄÒ É?Ðõ" ÅþÐË ×?×?×â Ì? ÐæÄé.
Ñ?Áä×?×?ÍÔÐË Ë÷Ïû×ßÈù ÈÕÏü Ð?Ï?×ßÀä ÖÔÐßÐÜÃ? ÐêÏ?ÏÅ ÎþÆ ÌÊÑ?ÐË Ð?Ïû×â
Ì? ÐæÄé. ÏÉÈ? ÅùÎþ, "images"Æ? Å?ÇÊÕôÈ? ÎÖÇÅÏÅ ÐæÄÒ È?Å÷ .gifÏÝ
.jpg ÖÔÐßÐÊ "
/images/.*(jpg|gif)$
"ÇÞ Ñ?Ô?×â Ì?
ÐæÄé. ÎÖÖÔÔÅÄÒ PCRE Æ?ÐÜÊúÇ?È?È?
Ë÷Ïû×ßÏ? PerlØ?Ø? Ñ?Áä×?×?ÍÔÐË Ñ?Ï?×áÄé.
- Ï?×ÑÇßÍÓ (Reverse Proxy)
- Õ?Æ?ÐÜÎ?Ö?ÏÅÀä Í×Ñ? Ì-É?ÓÃÇà ÊÈÐÜÄÒ ×ÑÇßÍÓ (proxy) Ì-É?. ÊÈÎØË? ÐÜÐ? Ø?ÐÊ ÊÞ×ßÈ?
ÊàËú×ßÁòÐ?×è Õ?Æ?ÐÜÎ?Ö?ÏÅÀä Í×Ñ? Ì-É?È? Ì?ÁöÆ? Ð?Ïû×ßÄé.
- Secure Sockets Layer (SSL)
- Netscape CommunicationsË÷ÀÅ TCP/IP
ÃçÖ?Ï?Ð× ÐßÉíÐ?ÐÞ ÕûÍÕ ÐÞÑ?À? ÎßØ?Ø-È? Ð?×è ÈÈÅ÷ ×ÑÇÞÕôÔí.
ÀÅÐõ ÐßÉíÐ?ÐÞ ÏûÅÅÄÒ HTTPS (HyperText Transfer Protocol
(HTTP) over SSL)ÐÜÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- Server Side Includes (SSI)
- HTML ÖÔÐß ÎØÏÅ ÓÃÈ?Ñ?ÍÓÎþÈ? Ö?×ä×ßÄÒ
ÁòÌ?.
Ò?Àý: Server Side Includes ÌâÀÃ
- ÌÌÌ× (Session)
- ÐßÉíÐ?ÐÈÇÞ ÕûÍÕÐ× Ë?ØÂ(context) Ñ?ÊÈ.
- SSLeay
- Eric A. YoungÐÜ ÀÃÉï×á Ï?ÇÅ SSL/TLS ÁÈ×? Æ?ÐÜÊúÇ?È?
- ÄûÔ?Ð? ÎßØ?É (Symmetric
Cryptography)
- ÎßØ?ÏÝ ×èÅÆ ÐëÎ?ÏÅ ÀÀÐÊ ÎßØ?ÕÀÈ? Ë÷Ïû×ßÄÒ ÎßØ?Áò
(Ciphers)Ð× Ï?ÁÈ Éç ØÀÏû.
Ò?Àý: SSL/TLS Encryption
- ÕÈÊÌ (Tarball)
tar
ÅÅÁÈÈ? Ë÷Ïû×ßÏ? ÖÔÐßÅùÐË È?ÐÊ É-ÐÍ. ÎÖÖÔÔÅÄÒ
tar ÖÔÐßÐË ÎàÓð×ßÀÕÃ? pkzipÐÈÇÞ ÎàÓð×ßÏ? ÉøÖ?ÅØÄé.
- Transport Layer Security (TLS)
- ÐÞÕÝÃíÁòÌ? À?ÇÓ ÁÉÑ?×?ÑèØ-ÁòÁÈ(Internet Engineering Task
Force, IETF)ÀÅ TCP/IP ÃçÖ?Ï?Ð× ÐßÉíÐ?ÐÞ ÕûÍÕ ÐÞÑ?À? ÎßØ?Ø-È?
Ð?×è ÈÈÅ÷ SSLÐ× ØÔÌã ×ÑÇÞÕôÔí. TLS É?Ð? 1ÐÊ SSL É?Ð? 3À? ÀÕÐ×
Ð?Ë÷×ßÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-
- Uniform Resource Locator
(URL)
- ÐÞÕÝÃíÏÅ ÐæÄÒ ÐêÏ?Ð× ÐÜÈ?/ÑæÌâ. Ñ?ÍÔÐÈÇÞÄÒ Uniform Resource
IdentifierÆ?Àý ×ßÄÒ ÀÝÐ× ÐßË?Ð?ÐÞ ÊåÀ?ÍÔ ÈýÔ?ÐÜÄé. ÊÈÕû URLÐÊ
http
Ã? https
ÀÀÐÊ ÍÊÕÄ(scheme), Ø?ÍÊÖ?Èý,
ÀöÇÞÇÞ ÁÈÌÊÅØÄé. ÐÜ ÖôÐÜÑ?Ð× URLÐÊ
http://httpd.apache.org/docs/2.2/glossary.html
ÐÜÄé.
- Uniform Resource Identifier
(URI)
- ÓïË?Ð?ÐÞ ÐêÏ?ÐÜÃ? Í×Ñ? ÐêÏ?ÐË Ñ?Ô?×ßÁòÐ?×á À?Àñ×á É?ÐêÏ-.
À?ÍÔÐ?ÐÈÇÞ RFC
2396ÏÅÌ- Ñ?Ð××áÄé. Ï?ÅõÏÝÐÜÅõÐ?ÏÅÌ- Ë÷Ïû×ßÄÒ URIÈ? ÊÈÕû
URLÐÜÆ?Àý ÊÞÈ?Äé.
- ÀÅË?Ø?ÍÊÖ? (Virtual Hosting)
- ÎÖÖÔÔÅ ×ßÃ?ÇÞ Ï?Ç? Ð?Ë÷ÐÜÖ?È? Ì-ÊåÍÊ×ßÁò. IP ÀÅË?Ø?ÍÊÖ?ÄÒ
Ð?Ë÷ÐÜÖ?ÈÆÄé IP ÑæÌâÀÅ ÄéÈ?Äé. ÐÜÈ?ÁòÉí(name-based)
ÀÅË?Ø?ÍÊÖ?ÄÒ Ø?ÍÊÖ?ÈýÈÈÐË Ë÷Ïû×ßÉ×ÇÞ ×á IP ÑæÌâÏÅÌ- Ï?Ç?
Ë÷ÐÜÖ?È? Ì-ÊåÍÊ×â Ì? ÐæÄé.
Ò?Àý: ÎÖÖÔÔÅ ÀÅË?Ø?ÍÊÖ? É?Ì-
- X.509
- ÁÉÑ?Ð?ÁòÕûÍÕÏ?×å(International Telecommunication Union,
ITU-T)ÐÜ Á×Ðõ×ßÄÒ ÐÞÑ?Ì- Î÷ÍÔ. SSL/TLS ÐÞÑ?ÏÅÌ- Ë÷Ïû×áÄé.
Ò?Àý: SSL/TLS ÎßØ?Ø-