www.europe.redhat.com Home  |  Products  |  Shop  |  Services  |  Training  |  Support   
Red Hat Documentation

Using Virtual Hosts

Using Virtual Hosts

You can use Apache's virtual hosts capability to run different servers for different IP addresses, different host names or different ports on the same machine. If you're interested in using virtual hosts for different IP addresses or different host names on your machine, complete information is provided in the Apache documentation on your machine or on the Web at http://www.apache.org/docs/vhosts/.

Virtual hosts are configured within the httpd.conf file, as described in the section called Configuration Directives in httpd.conf. Please review that section before you start to change the virtual hosts configuration on your machine.

The default configuration of your Red Hat Apache/SSL Server uses virtual hosts to run two Web servers: a Red Hat Apache/SSL Server and a non-secure Web server. Both servers use the same IP address and host name, but they listen on different ports. This configuration enables you to serve both secure and non-secure documents in the most efficient manner possible. As you may know, secure HTTP transmissions take more time than non-secure, because a lot more information is being passed back and forth during secure transactions. So using your Red Hat Apache/SSL Server for non-secure Web traffic is not a good idea.

Your Red Hat Apache/SSL Server is configured as a virtual host in httpd.conf. The configuration options for your Red Hat Apache/SSL Server are contained within the virtual host tags in the httpd.conf file. If you need to change something about the configuration of your Red Hat Apache/SSL Server, you'll need to change the configuration directives inside virtual host tags in the httpd.conf file. Your Red Hat Apache/SSL Server, by default, listens on port 443, the default port for secure Web communications.

The non-secure Web server is configured as the "non-virtual" host in the httpd.conf file. In other words, the non-secure Web server's configuration options are outside of the virtual host tags in httpd.conf. If you want to change something about your non-secure Web server, you'll need to change the configuration directives in httpd.conf outside of the virtual host tags. Your non-secure Web server, by default, listens on port 80, the default port for non-secure Web communications.

By default, both the secure and the non-secure Web servers share the same DocumentRoot, a configuration directive specified in httpd.conf. In other words, the secure and the non-secure Web server look in the same place for the HTML files that they are going to provide in response to requests. By default, the DocumentRoot is set to /home/httpd.php3.

To change the DocumentRoot so that it is no longer shared by both the secure server and the non-secure server, change one of the DocumentRoot directives in httpd.conf. The DocumentRoot outside the virtual host tags defines the DocumentRoot for your non-secure Web server. The DocumentRoot within the virtual host tags that define your Red Hat Apache/SSL Server is for your secure Web server.

If for some reason you want to disable the non-secure Web server on your machine, you can. In httpd.conf, change the line which reads:

Port 80
	

Change the above line so that it reads:

Port 443
	

Then comment out the Listen 80 line (inside <IfDefine SSL> tags), so that instead of:

Listen 80
	

Change the above line so that it reads:

#Listen 80
	

After these two steps, your Red Hat Apache/SSL Server will be accepting connections on port 443, the default port for secure Web communications. However, your server will not accept connections on port 80, the default port for non-secure communications, so the non-secure Web server will be effectively disabled.

Most people will probably use their Red Hat Apache/SSL Server as it is configured. Therefore, they'll be using the built-in virtual hosts capability, but they won't have to do any manipulation of the virtual hosts directives in httpd.conf. However, if you would like to use the virtual hosts capability for some other reason, you can.

To create a name-based virtual host, you'll need to alter the virtual host lines, provided as an example, in httpd.conf, or create your own virtual host section. The example lines read as follows:

#<VirtualHost ip.address.of.host.some_domain.com>
#    ServerAdmin webmaster@host.some_domain.com
#    DocumentRoot /www/docs/host.some_domain.com
#    ServerName host.some_domain.com
#    ErrorLog logs/host.some_domain.com-error_log
#    CustomLog logs/host.some_domain.com-access_log common
#</VirtualHost>
	

Uncomment all of the lines (remove the # from the beginning of each line). Then add the correct information for your machine and/or your virtual host to each line.

In the first line, change ip.address.of.host.some_domain.com to your server's IP address. Change the ServerName to a valid DNS name to use for the virtual host. In other words, don't just make something up. Ask your system administrator if you don't know how to get a valid domain name.

You'll also need to uncomment one of the NameVirtualHost lines in httpd.conf:

#NameVirtualHost 12.34.56.78:80
#NameVirtualHost 12.34.56.78

Uncomment one of the lines and change the IP address to your machine's IP address, and port if necessary.

Many other configuration directives can be placed between the virtual host tags, depending upon why you're setting up a virtual host.

If you set up a virtual host and want it to listen on a non-default port (80 is the default port for non-secure Web communications; 443 is the default port for secure Web communications), you'll need to set up a virtual host for that port and add a Listen line to httpd.conf corresponding to that port.

To have a virtual host work specifically for that port, add the port number to the first line of the virtual host configuration. The first line should look something like the following:

<VirtualHost ip_address_of_your_server:12331>
	

This line would create a virtual host that listens on port 12331. Substitute the port number you want to use for 12331 in the previous example.

Underneath the Listen lines in httpd.conf, add a line like the following, which will instruct your Web server to listen on port 12331:

Listen 12331
	

You must restart your server to start a new virtual host.

Much more complete information about creating and configuring both named-based and IP address-based virtual hosts is provided on the Web at http://www.apache.org/docs/vhosts/index.php3. Please check the Apache Group's virtual host documentation for more details on using virtual hosts.



Products & Services  |  Download  |  Support  |  Training  |  Partners & Programs
About Red Hat  |  Legal statement  |  Privacy statement  |  Y2K statement
redhat.com

© 2000 Red Hat, Inc. All right reserved.