{"id":233234,"date":"2023-02-08T12:56:00","date_gmt":"2023-02-08T09:56:00","guid":{"rendered":"https:\/\/wordpress.mediadoma.com\/?p=233234"},"modified":"2023-02-08T12:56:03","modified_gmt":"2023-02-08T09:56:03","slug":"cloudflare-toetab-ssl-i","status":"publish","type":"post","link":"https:\/\/wordpress.mediadoma.com\/et\/cloudflare-toetab-ssl-i\/","title":{"rendered":"CloudFlare toetab SSL-i"},"content":{"rendered":"\n<p>Tuhanded veebisaidid kasutavad <a href=\"https:\/\/helloacm.com\/enabling-two-factor-auth-for-cloudflare-accounts\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">CloudFlare&#8217;i<\/a>, kuulsat sisu edastamise v\u00f5rku (CDN). CloudFlare&#8217;i kasutamise eelised on j\u00e4rgmised:<\/p>\n<p>1 suurendada lehe laadimiskiirust, et veebisaidi sisu saaks teenindada jaotatuna kogu maailmas.<\/p>\n<p>2 Shield-serverit asuvad k\u00fclastaja ja teie p\u00e4risserveri vahel, nii et Distribute DOS-i r\u00fcnderiskid on minimeeritud.<\/p>\n<p>Jah, see k\u00f5lab liiga h\u00e4sti, et olla t\u00f5si (tasuta pakett), kuid sel juhul pean \u00fctlema, jah, see on tasuta ja on t\u00f5si, et see v\u00e4hendab veebisaidi ohtu sattumise ohtu ja suurendab oluliselt ka veebisaiti laadimiskiirus.<\/p>\n<h3>SSL<\/h3>\n<p>SSL-id (et teil oleks turvaline <a href=\"https:\/\/helloacm.com\/how-to-setup-multiple-ssl-https-on-one-server-vps-or-dedicate-server\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">HTTPS<\/a> -\u00fchendus ebaturvalise HTTP kaudu), mida CloudFlare toetab, on j\u00e4rgmised: paindlikud, t\u00e4is- ja ranged re\u017eiimid. Paindlik konfiguratsioon ei n\u00f5ua teie tegelikul serveril SSL-sertifikaate ja seega saab selle seadistada mis tahes veebisaidi jaoks. T\u00e4is- ja range mudelid n\u00f5uavad, et teie serveril oleks SSL-sertifikaat, kuid ainult range mudel kontrollib SSL-sertifikaadi kehtivust.<\/p>\n<p>ssl-sertifikaadid CloudFlare&#8217;is<\/p>\n<p>Tasuta kontode puhul on aktiveerimine kuni 24 tundi (mitte koheselt, kuid piisavalt kiiresti). Eelistatud on range re\u017eiim, kuna <a href=\"https:\/\/wordpress.mediadoma.com\/et\/gd-star-ratingi-pistikprogramm-ei-toeoeta-korralikult-kui-cloudflare-on-sisse-luelitatud\/\" title=\"CloudFlare\">CloudFlare<\/a> kr\u00fcpteerib SSL-i abil suhtluse teie veebisaidile ja veebisaidilt.<\/p>\n<h3>Taasta k\u00fclastaja IP<\/h3>\n<p>Kuna CloudFlare&#8217;i serverid asuvad k\u00fclastaja ja teie serveri vahel, n\u00e4eb teie server k\u00fclastaja IP-aadressi asemel CloudFlare&#8217;i IP-aadressi, mis v\u00f5ib m\u00f5jutada teie adsense-reklaamide geograafilist sihtimist. Selle probleemi lahendamiseks saate installida WordPressi pistikprogrammi. CloudFlare&#8217;il on WordPressi pistikprogramm k\u00fclastaja tegeliku IP-aadressi taastamiseks. Teise v\u00f5imalusena v\u00f5ite installida mooduli <strong>mod_cloudflare<\/strong> Apache2 (kasutage laaditud moodulite kontrollimiseks <strong>k\u00e4sku sudo apache2ctl -M | sort<\/strong> )<\/p>\n<p><a href=\"https:\/\/www.cloudflare.com\/resources-downloads#mod_cloudflare\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">https:\/\/www.cloudflare.com\/resources-downloads#mod_cloudflare<\/a><br \/>\n<a href=\"https:\/\/github.com\/cloudflare\/mod_cloudflare\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">https:\/\/github.com\/cloudflare\/mod_cloudflare<\/a><\/p>\n<p><a href=\"https:\/\/wordpress.mediadoma.com\/wp-content\/uploads\/2022\/01\/post-154345-61e53de9234d2.jpg\" data-rel=\"lightbox\"><img decoding=\"async\" class=\"SDStudio-light-box-enable SDStudio-editor-tools-md-imp\" src=\"https:\/\/wordpress.mediadoma.com\/wp-content\/uploads\/2022\/01\/post-154345-61e53de9234d2.jpg\" alt=\"CloudFlare toetab SSL-i\"><\/a><\/p>\n<p>Tegelike k\u00fclastajate IP-aadresside logimine: mod_cloudflare Apache jaoks httpd<\/p>\n<h3>HSTS<\/h3>\n<p>HSTS j\u00f5ustab HTTPS-\u00fchenduse (te ei saa edaspidi kahetseda p\u00e4rast Chrome&#8217;i, Firefoxi brauserites kasutatava nimekirjaga liitumist). Teie veebisait j\u00e4etakse brauserisse meelde (loend), et j\u00f5ustada HTTPS-\u00fchendus olenemata sellest, kas kasutaja sisestab HTTPS:\/\/ v\u00f5i mitte.<\/p>\n<p><a href=\"https:\/\/wordpress.mediadoma.com\/wp-content\/uploads\/2022\/01\/post-154345-61e53dea377cc.jpg\" data-rel=\"lightbox\"><img decoding=\"async\" class=\"SDStudio-light-box-enable SDStudio-editor-tools-md-imp\" src=\"https:\/\/wordpress.mediadoma.com\/wp-content\/uploads\/2022\/01\/post-154345-61e53dea377cc.jpg\" alt=\"CloudFlare toetab SSL-i\"><\/a><\/p>\n<p>HTTP range transpordi turvalisus (HSTS, RFC 6797) on p\u00e4is, mis v\u00f5imaldab veebisaidil kliendi veebibrauserites turbepoliitikat t\u00e4psustada ja j\u00f5ustada. See eeskirjade j\u00f5ustamine kaitseb turvalisi veebisaite madalama versiooni r\u00fcnnakute, SSL-i eemaldamise ja k\u00fcpsiste kaaperdamise eest. See v\u00f5imaldab veebiserveril deklareerida poliitikat, et brauserid loovad \u00fchenduse ainult turvaliste HTTPS-\u00fchenduste kaudu, ja tagab, et l\u00f5ppkasutajad ei kl\u00f5psa l\u00e4bi kriitilisi turvahoiatusi. HSTS on k\u00f5rge turvalisusega veebisaitide jaoks oluline turvamehhanism. HSTS-i p\u00e4iseid arvestatakse ainult siis, kui serveeritakse HTTPS-\u00fchenduste, mitte HTTP kaudu.<\/p>\n<p>CloudFlare toetab HSTS-i, nii et seda on lihtsam \u00fche kl\u00f5psuga seadistada.<\/p>\n<h3>HTTP \u00fcmber HTTPS-i<\/h3>\n<p>Saate seda teha .htaccessi kaudu<\/p>\n<pre><code>RewriteEngine On \nRewriteCond %{SERVER_PORT} 80 \nRewriteRule ^(.*)$ &lt;a class=\"vglnk\" target=\"_blank\" href=\"https:\/\/uploadbeta.com\/$1\" rel=\"nofollow\"&gt;&lt;span&gt;https&lt;\/span&gt;&lt;span&gt;:\/\/&lt;\/span&gt;&lt;span&gt;uploadbeta&lt;\/span&gt;&lt;span&gt;.&lt;\/span&gt;&lt;span&gt;com&lt;\/span&gt;&lt;span&gt;\/$&lt;\/span&gt;&lt;span&gt;1&lt;\/span&gt;&lt;\/a&gt; [R=301,L] \n\u00a0\nRewriteEngine On\nRewriteBase \/\nRewriteCond %{HTTP_HOST} !^&lt;a class=\"vglnk\" target=\"_blank\" href=\"http:\/\/uploadbeta.com\" rel=\"nofollow\"&gt;&lt;span&gt;uploadbeta&lt;\/span&gt;&lt;span&gt;.&lt;\/span&gt;&lt;span&gt;com&lt;\/span&gt;&lt;\/a&gt;$ [NC]\nRewriteRule ^(.*)$ &lt;a class=\"vglnk\" target=\"_blank\" href=\"https:\/\/uploadbeta.com\/$1\" rel=\"nofollow\"&gt;&lt;span&gt;https&lt;\/span&gt;&lt;span&gt;:\/\/&lt;\/span&gt;&lt;span&gt;uploadbeta&lt;\/span&gt;&lt;span&gt;.&lt;\/span&gt;&lt;span&gt;com&lt;\/span&gt;&lt;span&gt;\/$&lt;\/span&gt;&lt;span&gt;1&lt;\/span&gt;&lt;\/a&gt; [L,R=301]<\/code><\/pre>\n<p>V\u00f5i looge CloudFlare&#8217;is lehe reegel \u2013<\/p>\n<pre><code>&lt;a class=\"vglnk\" target=\"_blank\" href=\"http:\/\/*domain.com\/*\" rel=\"nofollow\"&gt;&lt;span&gt;http&lt;\/span&gt;&lt;span&gt;:\/\/*&lt;\/span&gt;&lt;span&gt;domain&lt;\/span&gt;&lt;span&gt;.&lt;\/span&gt;&lt;span&gt;com&lt;\/span&gt;&lt;span&gt;\/*&lt;\/span&gt;&lt;\/a&gt;<\/code><\/pre>\n<p>&quot;Kasuta alati HTTPS-i&quot; = sees<\/p>\n<h3>Muud pluginad<\/h3>\n<p>WordPress \u2013 ebaturvaline sisu parandaja, see on plugin, mis asendab HTTP d\u00fcnaamiliselt HTTPS-i versiooniga, nii et teie aadressiribal on roheline tabalukk (muidu on see hall, kuna kutsutakse ebaturvalist sisu).<\/p>\n<p><div id=\"PostUnique_PostSource\" style=\"padding-top: 50px\">:  <a target=\"_blank\" rel=\"noopener nofollow\" href=\"\/\/helloacm.com\" class=\"external external_icon\">helloacm.com<\/a><\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>CloudFlare toetab SSL-i<\/p>\n","protected":false},"author":1,"featured_media":224702,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_wp_rev_ctl_limit":""},"categories":[1017,1029,842,863],"tags":[1165],"class_list":["post-233234","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-kasulikud-saidid","category-ohutus","category-opetused","category-wordpress-4","tag-affiai-et"],"_links":{"self":[{"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/posts\/233234","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/comments?post=233234"}],"version-history":[{"count":0,"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/posts\/233234\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/media\/224702"}],"wp:attachment":[{"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/media?parent=233234"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/categories?post=233234"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/et\/wp-json\/wp\/v2\/tags?post=233234"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}