2016-02-03 94 views
6

keycloak Apache服務器的配置有配置keycloak背後我的Apache服務器的問題,與「混合內容」的問題

混合內容:在 「https://dev.mydomain.com/auth/admin/master/console/」加載頁面上 HTTPS,但要求一個不安全的腳本 'http://dev.mydomain.com/auth/resources/1.7.0.final/admin/keycloak/js/controllers/groups.js'。 此請求已被阻止;內容必須通過HTTPS提供。

我的Apache配置,

ServerName dev.mydomain.com 
ServerAdmin [email protected] 



SSLEngine on 
SSLCertificateFile /opt/mydomain/domains/dev.mydomain.com/apache/dev.mydomain.com.crt 
SSLCertificateKeyFile /opt/mydomain/domains/dev.mydomain.com/apache/dev.mydomain.com.key 
SSLCertificateChainFile /opt/mydomain/domains/dev.mydomain.com/apache/dev.mydomain.com.ca-bundle 


DocumentRoot /opt/mydomain/domains/dev.mydomain.com/apache/htdocs 

<Directory /opt/mydomain/domains/dev.mydomain.com/apache/htdocs> 
Options Indexes FollowSymLinks 
AllowOverride None 
Order allow,deny 
Allow from all 
    Require all granted 
</Directory> 

ProxyRequests Off 

ProxyPreserveHost On 
RequestHeader set X-Forwarded-Proto "https" 
RequestHeader set X-Forwarded-Port "443" 

<Proxy https://dev.mydomain.com/* > 
    Order deny,allow 
    Deny from all 
    Allow from all 
</Proxy> 



ProxyPass /auth http://localhost:10082/auth nocanon 
ProxyPassReverse /auth http://localhost:10082/auth 

任何想法有什麼不對?

回答

6

您還需要爲Enable SSL on a Reverse Proxy -> Configure WildFly

概述如果你找一個Wildfly CLI配置更新Wildfly配置,have a look here

$ jboss-cli.sh -standalone --file=batch.cli 

# batch.cli 
embed-server --std-out=echo 
batch 
/subsystem=undertow/server=default-server/http-listener=default:write-attribute(name=proxy-address-forwarding,value=true) 
/subsystem=undertow/server=default-server/http-listener=default:write-attribute(name=redirect-socket,value=proxy-https) 
/socket-binding-group=standard-sockets/socket-binding=proxy-https:add(port=443) 
run-batch 
stop-embedded-server