Uzivumela kanjani izitifiketi ze-SSL (okuhlanganisa ukuqondisa kabusha kwe-HTTPS ne-HSTS) ezizindeni ezingaphansi kwe-HestiaCP ngamaqoqo?

Wake wabhekana nesimo esinjalo? Yakhe ngomzamo omkhulu I-HestiaCP Iseva nezizinda ezingaphansi kwayo zidaliwe, kodwa uthola ukuthi udinga ukufaka isicelo mathupha futhi ulungiselele izitifiketi ze-SSL ngasinye ngasinye? 🤯 Lokhu kuhlukumeza kakhulu!

Ungakhathazeki, ngizokufundisa iqhinga namuhla. Ukuchofoza okukodwa kwenqwaba ye-SSL, kuhlanganise hhayi kuphela Masibethele Izitifiketi, futhi ikusize ngokuqondile ukuthi unike amandla Ukuqondisa kabusha okuzenzakalelayo kwe-HTTPS Kanye I-HSTS (HTTP Strict Transport Security),

🔥 Kungani unika amandla i-SSL ngobuningi?

Ungase ucabange: "Angikwazi ukuvele ngiwachofoze mathupha?" Yebo, kodwa uma unayo Amashumi noma amakhulu ezizinda ezingaphansi, ukusebenza ngezandla ngokungangabazeki ukuzihlukumeza!

Ukucubungula inqwaba kunezinzuzo ezilandelayo:
Yonga isikhathi: Ukwenza ngokuchofoza okukodwa, asikho isidingo sokuchofoza ngesandla.
Gwema ukweqiwa: Yehlisa amaphutha abantu futhi uqinisekise ukuthi zonke izizindana zivikelekile.
Sebenzisa i-HTTPS: Qondisa kabusha ngokuzenzakalelayo i-HTTP -> HTTPS, ngcono SEO Umphumela.
Ukuqinisa ukuphepha kwe-HSTS: Vimbela ukuhlasela komuntu phakathi futhi wenze isayithi livikeleke kakhulu.

💡 Izinyathelo ezithile zokusebenza

Okulandelayo, sisebenzisa ithuluzi lomugqa womyalo eliza ne-HestiaCP ukubhala okulula Iskripthi seShell, kwenziwa kalula Zonke izizinda ezingaphansi Ukucushwa kwe-SSL kwe.

Uzivumela kanjani izitifiketi ze-SSL (okuhlanganisa ukuqondisa kabusha kwe-HTTPS ne-HSTS) ezizindeni ezingaphansi kwe-HestiaCP ngamaqoqo?

📝 Isinyathelo 1: Thola uhlu lwezizinda ezingaphansi

Cabanga ukuthi isizinda sakho esiyinhloko siyi chenweiliang.com, ungeze izizinda ezingaphansi eziningi, isibonelo:

  • en.chenweiliang.com
  • ru.chenweiliang.com
  • la.chenweiliang.com
  • lv.chenweiliang.com

Kuskripthi, sidinga kuphela ukugcina uhlu lweziqalo zesizinda esingaphansi kwesinye, isibonelo:

SUBDOMAINS="en ru la lv"

Kamuva sizongena kulezi zisizinda futhi sifake izicelo zezitifiketi ze-SSL ngayinye ngayinye.


📜 Isinyathelo sesi-2: Bhala umbhalo ukuze unike amandla izitifiketi ze-SSL ngamaqoqo

I-HestiaCP inikeza Amathuluzi Womugqa Womyalo, singasebenzisa imiyalo emithathu elandelayo ukuze siqedele imisebenzi ehlobene ne-SSL:

  • v-add-letsencrypt-domain → Faka isicelo sesitifiketi se-SSL
  • v-add-web-domain-ssl-force → Sebenzisa i-HTTPS
  • v-add-web-domain-ssl-hsts → Nika amandla i-HSTS

Umbhalo ophelele umi kanje (kopisha futhi wenze ngokuqondile):

#!/bin/bash

# HestiaCP 用户名
USER="youruser"
# 你的主域名
DOMAIN="chenweiliang.com"
# 需要启用 SSL 的子域名前缀
SUBDOMAINS="en ru la lv"
# 遍历每个子域名,依次开启 SSL
for SUB in $SUBDOMAINS
do
    FULL_DOMAIN="$SUB.$DOMAIN"
    echo "🚀 在启用 $FULL_DOMAIN 的 SSL 配置..."

    # 申请 Let's Encrypt 证书
    v-add-letsencrypt-domain $USER $FULL_DOMAIN
    if [ $? -ne 0 ]; then
        echo "❌ 错误:获取 $FULL_DOMAIN SSL 证书失败(可能触发 Let's Encrypt 429 限流),请稍后重试。"
        continue
    fi

    # 强制 HTTPS 重定向
    v-add-web-domain-ssl-force $USER $FULL_DOMAIN

    # 启用 HSTS(HTTP 严格传输安全)
    v-add-web-domain-ssl-hsts $USER $FULL_DOMAIN

    echo "✅ $FULL_DOMAIN SSL 配置完成!"
done
echo "🎉 所有子域名 SSL 配置操作结束!"

🚀 Isinyathelo sesi-3: Sebenzisa iskripthi

Manje njengoba iskripthi sesibhaliwe, asiyiqhube!

1️⃣ Londoloza umbhalo njenge enable_ssl.sh
2️⃣ Nikeza izimvume zokusebenza:

chmod +x enable_ssl.sh

3️⃣ Qalisa iskripthi:

./enable_ssl.sh

Khona-ke ungabona Izitifiketi ze-SSL zazo zonke izizinda ezingaphansi Faka isicelo futhi uvule ngokuzenzakalelayo!


⚠ Amanothi

💡 Mayelana nomkhawulo wamanje othi Masibethele (iphutha le-429)
Masibhale Khawulela inombolo yezicelo zesitifiketi nge-IP ngayinye phakathi nehora elilodwaUma ulungiselela izizindana eziningi kakhulu ngesikhathi esisodwa, ungase uhlangane 429 Iphutha,

✅ Chofoza isixhumanisi esingezansi ukuze ubuke isisombululo ▼

  • Faka isicelo ngamaqoqo, isebenzisa izizinda ezingaphansi ezimbalwa kuphela ngesikhathi.
  • Ukusebenzisa iphoyinti lokugcina le-ACME(Isibonelo, isitifiketi sesicelo se-Cloudflare API).
  • Linda ihora elingu-1 bese uzama futhi,

💡 Hlola ukuthi i-HestiaCP isifake kahle yini isitifiketi se-SSL
Uma uthola Ukucushwa kwe-SSL kwehlulekile, ungayihlola ngokwenza:

v-list-web-domain $USER yoursubdomain.chenweiliang.com

Bheka SSL Yinkundla yesUma kungenjalo, udinga ukuyinika amandla mathupha.


🎯 Isiphetho

Akunzima ukwenza izitifiketi ze-SSL zisebenze ngamaqoqo. Okubalulekile wukusebenzisa indlela efanele. dlula Umugqa womyalo we-HestiaCP + Iskripthi seShell,ungakwazi Ukulungiselelwa kokuchofoza okukodwa kwe-HTTPS kuzo zonke izizinda ezingaphansi, kokubili okusebenzayo nokuphephile.

💡 Lokhu ngeke nje kukugcinele ithani lesikhathi, kodwa futhi kuzothuthukisa isikolo sakho se-SEO nokuphepha kwewebhusayithi., Kungani kungenjalo?

Izame manje bese wengeza ukuvikeleka kwe-HTTPS ezizindeni zakho ezingaphansi ukuze uzenze zivikeleke kakhulu futhi zibe zobuchwepheshe! 🚀

发表 评论

Ikheli lakho le-imeyili ngeke lishicilelwe. 必填 项 已 用 * Ilebula

Skrolela Top