Instalējiet H2O tīmekļa serveri sistēmā CentOS 7

H2O ir jaunas paaudzes HTTP serveris, kuram ir lieliska, pilnībā aprīkota HTTP/2 ieviešana visiem pašreizējiem izmantotajiem tīmekļa serveriem. Izmantojot H2O kā savu tīmekļa serveri, varat izmantot jaunās HTTP/2 specifikācijas funkcijas, piemēram, latentuma optimizāciju, servera push un servera puses prioritāšu noteikšanu, kas var izmantot modernās pārlūkprogrammas funkcijas, par kurām reti tiek runāts.

Šajā detalizētajā apmācībā es jums soli pa solim parādīšu, kā H2O palaist jūsu CentOS 7 x64 instancē.


  • CentOS 7 x64 servera gadījums.
  • Sudo lietotāju.
  • SSL sertifikāts (pēc izvēles)

1. darbība: atjauniniet sistēmu

Piesakieties, izmantojot SSH, izmantojot akreditācijas datus, kas atrodami jūsu instancē, un atjauniniet sistēmu, kā norādīts tālāk.

sudo yum install epel-release -y
sudo yum clean all && sudo yum update -y

2. darbība. Instalējiet H2O

Lai instalētu H2O operētājsistēmā CentOS 7, jums jāpievieno Bintray RPM repozitorijs, lai instalētu iepriekš izveidotos H2O bināros failus. Izmantojiet Nano redaktoru, lai izveidotu pielāgotu repo.

sudo nano /etc/yum.repos.d/bintray-h2o-rpm.repo

Kopējiet un ielīmējiet tālāk esošo tekstu repo failā.


Pēc tam instalējiet H2O.

sudo yum install h2o -y

Tagad, kad H2O ir instalēts, bet pirms pakalpojuma iespējošanas un palaišanas ir nepieciešama atbilstoša konfigurācija, un mums ir jāizveido konkrēts lietotājs un grupa, kurā H2O darboties. Izveidojiet grupu un lietotāju, lai H2O darbotos ar nosaukumu h2o.

sudo groupadd -g 101 h2o
sudo useradd -d /etc/h2o -g 101 -M -s /sbin/nologin -u 101 h2o

3. darbība: H2O tīmekļa servera konfigurēšana

Tālāk ir sniegti konfigurācijas iestatīšanas piemēri dažādiem unencrypted, encrypted, staticun dynamicservera iestatījumiem; kā arī visu četru kombinācija.

Novirzīt http://www.example.comuzām HTML lapām, bez PHP) konfigurāciju

Pārejiet uz /etc/h2o/direktoriju.

cd /etc/h2o/

Pārdēvējiet noklusējuma vērtību h2o.confuz h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Izveidojiet jaunu h2o.conffailu.

sudo nano h2o.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu h2o.conffailā.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.html' ]
      port: 80
        file.dir: /var/www/
      port: 80
          status: 301
          url: ""
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Iespējojiet un startējiet H2O serveri.

sudo systemctl enable h2o
sudo systemctl start h2o

Izveidot noklusējuma index.html, izmantojot veidni /var/www/htmluz direktoriju iespēju file.diriepriekš uzskaitīti /var/www/

sudo cp -var /var/www/html /var/www/

Tagad atveriet pārlūkprogrammu un ievadiet servera domēna nosaukumu ( example.comvai savai instancei. Vai saņemat ziņojumu Unable to connectvai This site can’t be reachedziņojumu? CentOS noklusējuma ugunsmūra iestatījums neatļauj ienākošos savienojumus ar http portu. Lai to atvērtu, izpildiet tālāk norādītās darbības.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --reload

Atsvaidziniet lapu savā pārlūkprogrammā ( F5), un jūs saņemsit šo ziņojumu.

Welcome to H2O - an optimized HTTP server

It works!

Novirzīt http://example.comuzām HTML lapām, bez PHP) konfigurāciju

Pārejiet uz /etc/h2o/direktoriju.

cd /etc/h2o/

Pārdēvējiet noklusējuma vērtību h2o.confuz h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Izveidojiet jaunu h2o.conffailu.

sudo nano h2o.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu h2o.conffailā.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.html' ]
      port: 80
          status: 301
          url: ""
      port: 80
        file.dir: /var/www/
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Iespējojiet un startējiet H2O serveri.

sudo systemctl enable h2o
sudo systemctl start h2o

Izveidot noklusējuma index.htmlfailu, izmantojot veidni /var/www/htmluz direktoriju iespēju file.diriepriekš uzskaitīti /var/www/

sudo cp -var /var/www/html /var/www/

Tagad atveriet pārlūkprogrammu un ievadiet servera domēna nosaukumu ( example.comvai savai instancei. Vai saņemat ziņojumu Unable to connectvai This site can’t be reachedziņojumu? CentOS noklusējuma ugunsmūra iestatījums neatļauj ienākošos savienojumus ar http portu. Lai to atvērtu, veiciet tālāk norādītās darbības.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --reload

Atsvaidziniet lapu savā pārlūkprogrammā ( F5), un jūs saņemsit šo ziņojumu.

Welcome to H2O - an optimized HTTP server

It works!

Novirzīt http://www.example.comuz lapu, PHP-FPM 5.6.x) konfigurāciju

Pārejiet uz /etc/h2o/direktoriju.

cd /etc/h2o/

Pārdēvējiet noklusējuma vērtību h2o.confuz h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Izveidojiet jaunu h2o.conffailu.

sudo nano h2o.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu h2o.conffailā.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
        file.dir: /var/www/
          internal: YES
          status: 307
          url: /index.php
      port: 80
          status: 301
          url: ""
  extension: .php
    port: /run/php-fpm-5.6.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Lai apstrādātu PHP, ir jāinstalē un jākonfigurē PHP-FPM 5.6 dēmons. Lai instalētu PHP-FPM versiju, kas ir jaunāka par noklusējuma 5.4.x, ir jāinstalē REMI repo, kas satur PHP versijas 5.6.x, 7.0.x un 7.1.x. Instalējiet PHP versiju 5.6.x.

sudo yum install -y
sudo yum install php56-php-fpm -y

Pārejiet uz /opt/remi/php56/root/etc/direktoriju.

cd /opt/remi/php56/root/etc/

Pārdēvējiet noklusējuma vērtību php-fpm.confuz php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Izveidojiet jaunu php-fpm.conffailu.

sudo nano php-fpm.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu php-fpm.conffailā.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-5.6-error.log
pid = /var/run/
process_control_timeout = 10s

Pārdēvējiet noklusējuma www.conffailu php-fpm.ddirektorijā.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Izveidojiet jaunu www.conffailu.

sudo nano php-fpm.d/www.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu www.conffailā. Mainiet savu, pm.max\_childrenlai tas atbilstu CPU skaitam atbilstoši jūsu VPS instancei.

group = h2o
listen = /var/run/php-fpm-5.6.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Pārdēvējiet noklusējuma php.inifailu.

sudo mv php.ini php.ini.original

Izveidojiet jaunu php.inifailu.

sudo nano php.ini

Copy and paste the text below into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/opt/remi/php56/root/var/lib/php/session/"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Change the group ownership for the /opt/remi/php56/root/var/lib/php/session/ directory from the apache group to the h2o group.

sudo chown root.h2o /opt/remi/php56/root/var/lib/php/session/

Create a directory where the PHP-FPM server logs will reside.

sudo mkdir /var/log/php-fpm/

Enable and start the PHP-FPM server.

sudo systemctl enable php56-php-fpm 
sudo systemctl start php56-php-fpm

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a directory where the default index.php will reside listed by the directory option file.dir above in /var/www/

sudo mkdir /var/www/

Create a default index.php using the phpinfo command to test PHP.

sudo nano /var/www/

Copy and paste the text below in the new index.php file.


Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get the standard PHP info page.

Redirect To (Dynamic Page, PHP-FPM 5.6.x) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
          status: 301
          url: ""
      port: 80
        file.dir: /var/www/
          internal: YES
          status: 307
          url: /index.php
  extension: .php
    port: /run/php-fpm-5.6.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

In order to process PHP, the PHP-FPM 5.6 daemon must be installed and configured. In order to install a version of PHP-FPM newer than the default 5.4.x, the REMI repo must be installed which contains PHP versions 5.6.x, 7.0.x and 7.1.x. Type the following commands to install PHP version 5.6.x.

sudo yum install -y
sudo yum install php56-php-fpm -y

Navigate to the /opt/remi/php56/root/etc/ directory.

cd /opt/remi/php56/root/etc/

Rename the default php-fpm.conf to php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Create a new php-fpm.conf file.

sudo nano php-fpm.conf

Copy and paste the text below into the php-fpm.conf file.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-5.6-error.log
pid = /var/run/
process_control_timeout = 10s

Rename the default www.conf file in the php-fpm.d directory.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Create a new www.conf file.

sudo nano php-fpm.d/www.conf

Copy and paste the following text into the www.conf file. Change your pm.max\_children to match the number of CPUs in accordance with your VPS instance.

group = h2o
listen = /var/run/php-fpm-5.6.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Rename the default php.ini file.

sudo mv php.ini php.ini.original

Create a new php.ini file.

sudo nano php.ini

Copy and paste the following text below into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/opt/remi/php56/root/var/lib/php/session/"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Change the group ownership for the /opt/remi/php56/root/var/lib/php/session/ directory from the apache group to the h2o group.

sudo chown root.h2o /opt/remi/php56/root/var/lib/php/session/

Create a directory where the PHP-FPM server logs will reside.

sudo mkdir /var/log/php-fpm/

Enable and start the PHP-FPM server.

sudo systemctl enable php56-php-fpm 
sudo systemctl start php56-php-fpm

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a directory where the default index.php will reside listed by the directory option file.dir above in /var/www/

sudo mkdir /var/www/

Create a default index.php using the phpinfo command to test PHP.

sudo nano /var/www/

Copy and paste the text below in the new index.php file.


Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get the standard PHP info page.

Redirect To (Dynamic Page, PHP-FPM 7.1.x) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
        file.dir: /var/www/
          internal: YES
          status: 307
          url: /index.php
      port: 80
          status: 301
          url: ""
  extension: .php
    port: /run/php-fpm-7.1.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

In order to process PHP, the PHP-FPM 7.1 daemon must be installed and configured. In order to install a version of PHP-FPM newer than the default 5.4.x, the REMI repo must be installed which contains PHP versions 5.6.x, 7.0.x and 7.1.x. Type the following commands below to install PHP version 7.1.x.

sudo yum install -y
sudo yum install php71-php-fpm -y

Navigate to the /etc/opt/remi/php71/ directory.

cd /etc/opt/remi/php71/

Rename the default php-fpm.conf to php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Create a new php-fpm.conf file.

sudo nano php-fpm.conf

Copy and paste the following text into the php-fpm.conf file.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-7.1-error.log
pid = /var/run/
process_control_timeout = 10s

Rename the default www.conf file in the php-fpm.d directory.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Create a new www.conf file.

sudo nano php-fpm.d/www.conf

Copy and paste the text below into the www.conf file. Change your pm.max\_children to match the number of CPUs in accordance with your VPS instance.

group = h2o
listen = /var/run/php-fpm-7.1.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Rename the default php.ini file.

sudo mv php.ini php.ini.original

Create a new php.ini file.

sudo nano php.ini

Copy and paste the text below into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/var/opt/remi/php71/lib/php/session/"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Change the group ownership for the /var/opt/remi/php71/lib/php/session/ directory from the apache group to the h2o group.

sudo chown root.h2o /var/opt/remi/php71/lib/php/session/

Create a directory where the PHP-FPM server logs will reside.

sudo mkdir /var/log/php-fpm/

Enable and start the PHP-FPM server.

sudo systemctl enable php71-php-fpm 
sudo systemctl start php71-php-fpm

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a directory where the default index.php will reside listed by the directory option file.dir above in /var/www/

sudo mkdir /var/www/

Create a default index.php using the phpinfo command to test PHP.

sudo nano /var/www/

Copy and paste the text below in the new index.php file.


Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get the standard PHP info page.

Redirect To (Dynamic Page, PHP-FPM 7.1.x) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
          status: 301
          url: ""
      port: 80
        file.dir: /var/www/
          internal: YES
          status: 307
          url: /index.php
  extension: .php
    port: /run/php-fpm-7.1.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

In order to process PHP, the PHP-FPM 7.1 daemon must be installed and configured. In order to install a version of PHP-FPM newer than the default 5.4.x, the REMI repo must be installed which contains PHP versions 5.6.x, 7.0.x and 7.1.x. Type the following commands below to install PHP version 7.1.x.

sudo yum install -y
sudo yum install php71-php-fpm -y

Navigate to the /etc/opt/remi/php71/ directory.

cd /etc/opt/remi/php71/

Rename the default php-fpm.conf to php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Create a new php-fpm.conf file.

sudo nano php-fpm.conf

Copy and paste the text below into the php-fpm.conf file.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-7.1-error.log
pid = /var/run/
process_control_timeout = 10s

Rename the default www.conf file in the php-fpm.d directory.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Create a new www.conf file.

sudo nano php-fpm.d/www.conf

Copy and paste the following text into the www.conf file. Change your pm.max\_children to match the number of CPUs in accordance with your VPS instance.

group = h2o
listen = /var/run/php-fpm-7.1.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Rename the default php.ini file.

sudo mv php.ini php.ini.original

Create a new php.ini file.

sudo nano php.ini

Copy and paste the following text into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/var/opt/remi/php71/lib/php/session"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Change the group ownership for the /var/opt/remi/php71/lib/php/session/ directory from the apache group to the h2o group.

sudo chown root.h2o /var/opt/remi/php71/lib/php/session/

Create a directory where the PHP-FPM server logs will reside.

sudo mkdir /var/log/php-fpm/

Enable and start the PHP-FPM server.

sudo systemctl enable php71-php-fpm 
sudo systemctl start php71-php-fpm

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a directory where the default index.php will reside listed by the directory option file.dir above in /var/www/

sudo mkdir /var/www/

Create a default index.php using the phpinfo command to test PHP.

sudo nano /var/www/

Copy and paste the text below in the new index.php file.


Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get the standard PHP info page.

Redirect,, and to (Static HTML Pages, No PHP) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.html' ]
      port: 80
          status: 301
          url: ""
      port: 80
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        file.dir: /var/www/
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          status: 301
          url: ""
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Create a custom directory to store the default SSL options for all websites that use SSL.

sudo mkdir conf.d

Create a new ssl.conf file.

sudo nano conf.d/ssl.conf

Copy and paste the following text into the ssl.conf file.

cipher-preference: server
dh-file: /etc/ssl/h2o/dhparam_2048.pem

Make a directory to store the dhparam_2048.pem file that will be regenerated daily via a cronjob.

sudo mkdir /etc/ssl/h2o/

Create a new regenerate_dhparam file.

sudo nano /etc/cron.daily/regenerate_dhparam

Copy and paste the following text into the regenerate_dhparam file.

cd /etc/ssl/h2o
umask 022
for length in 2048
openssl dhparam -out dhparam_$length.tmp $length && mv dhparam_$length.tmp dhparam_$length.pem
chmod 444 dhparam_$length.pem

Make the bash file just created executable.

sudo chmod +x /etc/cron.daily/regenerate_dhparam

Execute the bash script for a first run as H2O won't start properly if it's not generated. This will take about a minute or two to generate on first run.

sudo /etc/cron.daily/regenerate_dhparam

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a default index.html using the template in /var/www/html to the directory option file.dir listed above in /var/www/

sudo cp -var /var/www/html /var/www/

Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --permanent --zone=public --add-service=https
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get this message.

Welcome to H2O - an optimized HTTP server

It works!

Redirect,, and to (Static HTML Pages, No PHP) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.html' ]
      port: 80
          status: 301
          url: ""
      port: 80
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        file.dir: /var/www/
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Create a custom directory to store the default SSL options for all websites that use SSL.

sudo mkdir conf.d

Create a new ssl.conf file.

sudo nano conf.d/ssl.conf

Copy and paste the following text into the ssl.conf file.

cipher-preference: server
dh-file: /etc/ssl/h2o/dhparam_2048.pem

Make a directory to store the dhparam_2048.pem file that will be regenerated daily via a cronjob.

sudo mkdir /etc/ssl/h2o/

Create a new regenerate_dhparam file.

sudo nano /etc/cron.daily/regenerate_dhparam

Copy and paste the following text inside of the regenerate_dhparam file.

cd /etc/ssl/h2o
umask 022
for length in 2048
openssl dhparam -out dhparam_$length.tmp $length && mv dhparam_$length.tmp dhparam_$length.pem
chmod 444 dhparam_$length.pem

Make the bash file just created executable.

sudo chmod +x /etc/cron.daily/regenerate_dhparam

Execute the bash script for a first run as H2O won't start properly if it's not generated. This will take about a minute or two to generate on first run.

sudo /etc/cron.daily/regenerate_dhparam

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a default index.html using the template in /var/www/html to the directory option file.dir listed above in /var/www/

sudo cp -var /var/www/html /var/www/

Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --permanent --zone=public --add-service=https
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get this message.

Welcome to H2O - an optimized HTTP server

It works!

Redirect,, and to (Dynamic Page, PHP-FPM 5.6.x) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
          status: 301
          url: ""
      port: 80
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        file.dir: /var/www/
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          internal: YES
          status: 307
          url: /index.php
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          status: 301
          url: ""
  extension: .php
    port: /run/php-fpm-5.6.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Create a custom directory to store the default SSL options for all websites that use SSL.

sudo mkdir conf.d

Create a new ssl.conf file.

sudo nano conf.d/ssl.conf

Copy and paste the text below into the ssl.conf file.

cipher-preference: server
dh-file: /etc/ssl/h2o/dhparam_2048.pem

Make a directory to store the dhparam_2048.pem file that will be regenerated daily via a cronjob.

sudo mkdir /etc/ssl/h2o/

Create a new regenerate_dhparam file.

sudo nano /etc/cron.daily/regenerate_dhparam

Copy and paste the following text inside of the regenerate_dhparam file.

cd /etc/ssl/h2o
umask 022
for length in 2048
openssl dhparam -out dhparam_$length.tmp $length && mv dhparam_$length.tmp dhparam_$length.pem
chmod 444 dhparam_$length.pem

Make the bash file just created executable.

sudo chmod +x /etc/cron.daily/regenerate_dhparam

Execute the bash script for a first run as H2O won't start properly if it's not generated. This will take about a minute or two to generate on first run.

sudo /etc/cron.daily/regenerate_dhparam

In order to process PHP, the PHP-FPM 5.6 daemon must be installed and configured. In order to install a version of PHP-FPM newer than the default 5.4.x, the REMI repo must be installed which contains PHP versions 5.6.x, 7.0.x and 7.1.x. Type the following commands to install PHP version 5.6.x.

sudo yum install -y
sudo yum install php56-php-fpm -y

Navigate to the /opt/remi/php56/root/etc/ directory.

cd /opt/remi/php56/root/etc/

Rename the default php-fpm.conf to php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Create a new php-fpm.conf file.

sudo nano php-fpm.conf

Copy and paste the following text into the php-fpm.conf file.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-5.6-error.log
pid = /var/run/
process_control_timeout = 10s

Rename the default www.conf file in the php-fpm.d directory.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Create a new www.conf file.

sudo nano php-fpm.d/www.conf

Copy and paste the text below into the www.conf file. Change your pm.max\_children to match the number of CPUs in accordance with your VPS instance.

group = h2o
listen = /var/run/php-fpm-5.6.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Rename the default php.ini file.

sudo mv php.ini php.ini.original

Create a new php.ini file.

sudo nano php.ini

Copy and paste the text below into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/opt/remi/php56/root/var/lib/php/session/"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Change the group ownership for the /opt/remi/php56/root/var/lib/php/session/ directory from the apache group to the h2o group.

sudo chown root.h2o /opt/remi/php56/root/var/lib/php/session/

Create a directory where the PHP-FPM server logs will reside.

sudo mkdir /var/log/php-fpm/

Enable and start the PHP-FPM server.

sudo systemctl enable php56-php-fpm 
sudo systemctl start php56-php-fpm

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a directory where the default index.php will reside listed by the directory option file.dir above in /var/www/

sudo mkdir /var/www/

Create a default index.php using the phpinfo command to test PHP.

sudo nano /var/www/

Copy and paste the text below in the new index.php file.


Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --permanent --zone=public --add-service=https
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get the standard PHP info page.

Redirect,, and to (Dynamic Page, PHP-FPM 5.6.x) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
          status: 301
          url: ""
      port: 80
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        file.dir: /var/www/
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          internal: YES
          status: 307
          url: /index.php
  extension: .php
    port: /run/php-fpm-5.6.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Create a custom directory to store the default SSL options for all websites that use SSL.

sudo mkdir conf.d

Create a new ssl.conf file.

sudo nano conf.d/ssl.conf

Copy and paste the text below into the ssl.conf file.

cipher-preference: server
dh-file: /etc/ssl/h2o/dhparam_2048.pem

Make a directory to store the dhparam_2048.pem file that will be regenerated daily via a cronjob.

sudo mkdir /etc/ssl/h2o/

Create a new regenerate_dhparam file.

sudo nano /etc/cron.daily/regenerate_dhparam

Copy and paste the following text inside of the regenerate_dhparam file.

cd /etc/ssl/h2o
umask 022
for length in 2048
openssl dhparam -out dhparam_$length.tmp $length && mv dhparam_$length.tmp dhparam_$length.pem
chmod 444 dhparam_$length.pem

Make the bash file just created executable.

sudo chmod +x /etc/cron.daily/regenerate_dhparam

Execute the bash script for a first run as H2O won't start properly if it's not generated. This will take about a minute or two to generate on first run.

sudo /etc/cron.daily/regenerate_dhparam

In order to process PHP, the PHP-FPM 5.6 daemon must be installed and configured. In order to install a version of PHP-FPM newer than the default 5.4.x, the REMI repo must be installed which contains PHP versions 5.6.x, 7.0.x and 7.1.x. Type the following commands to install PHP version 5.6.x.

sudo yum install -y
sudo yum install php56-php-fpm -y

Navigate to the /opt/remi/php56/root/etc/ directory.

cd /opt/remi/php56/root/etc/

Rename the default php-fpm.conf to php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Create a new php-fpm.conf file.

sudo nano php-fpm.conf

Copy and paste the text below into the php-fpm.conf file.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-5.6-error.log
pid = /var/run/
process_control_timeout = 10s

Rename the default www.conf file in the php-fpm.d directory.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Create a new www.conf file.

sudo nano php-fpm.d/www.conf

Copy and paste the text below into the www.conf file. Change your pm.max\_children to match the number of CPUs in accordance with your VPS instance.

group = h2o
listen = /var/run/php-fpm-5.6.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Rename the default php.ini file.

sudo mv php.ini php.ini.original

Create a new php.ini file.

sudo nano php.ini

Copy and paste the following text into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/opt/remi/php56/root/var/lib/php/session/"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Change the group ownership for the /opt/remi/php56/root/var/lib/php/session/ directory from the apache group to the h2o group.

sudo chown root.h2o /opt/remi/php56/root/var/lib/php/session/

Create a directory where the PHP-FPM server logs will reside.

sudo mkdir /var/log/php-fpm/

Enable and start the PHP-FPM server.

sudo systemctl enable php56-php-fpm 
sudo systemctl start php56-php-fpm

Enable and start the H2O server.

sudo systemctl enable h2o
sudo systemctl start h2o

Create a directory where the default index.php will reside listed by the directory option file.dir above in /var/www/

sudo mkdir /var/www/

Create a default index.php using the phpinfo command to test PHP.

sudo nano /var/www/

Copy and paste the text below in the new index.php file.


Now, open your browser and enter the server domain name ( or for your instance. Are you getting an Unable to connect or a This site can’t be reached message? CentOS's default firewall setting disallows incoming connections to the http port. Do the following to open it.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --permanent --zone=public --add-service=https
sudo firewall-cmd --reload

Refresh the page in your browser (F5) and you will get the standard PHP info page.

Redirect,, and to (Dynamic Page, PHP-FPM 7.1.x) Configuration

Navigate to the /etc/h2o/ directory.

cd /etc/h2o/

Rename the default h2o.conf to h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Create a new h2o.conf file.

sudo nano h2o.conf

Copy and paste the text below into the h2o.conf file.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
          status: 301
          url: ""
      port: 80
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        file.dir: /var/www/
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          internal: YES
          status: 307
          url: /index.php
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          status: 301
          url: ""
  extension: .php
    port: /run/php-fpm-7.1.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Create a custom directory to store the default SSL options for all websites that use SSL.

sudo mkdir conf.d

Create a new ssl.conf file.

sudo nano conf.d/ssl.conf

Copy and paste the text below into the ssl.conf file.

cipher-preference: server
dh-file: /etc/ssl/h2o/dhparam_2048.pem

Make a directory to store the dhparam_2048.pem file that will be regenerated daily via a cronjob.

sudo mkdir /etc/ssl/h2o/

Create a new regenerate_dhparam file.

sudo nano /etc/cron.daily/regenerate_dhparam

Copy and paste the following text inside of the regenerate_dhparam file.

cd /etc/ssl/h2o
umask 022
for length in 2048
openssl dhparam -out dhparam_$length.tmp $length && mv dhparam_$length.tmp dhparam_$length.pem
chmod 444 dhparam_$length.pem

Make the bash file just created executable.

sudo chmod +x /etc/cron.daily/regenerate_dhparam

Execute the bash script for a first run as H2O won't start properly if it's not generated. This will take about a minute or two to generate on first run.

sudo /etc/cron.daily/regenerate_dhparam

In order to process PHP, the PHP-FPM 7.1 daemon must be installed and configured. In order to install a version of PHP-FPM newer than the default 5.4.x, the REMI repo must be installed which contains PHP versions 5.6.x, 7.0.x and 7.1.x. Type the following commands below to install PHP version 7.1.x.

sudo yum install -y
sudo yum install php71-php-fpm -y

Navigate to the /etc/opt/remi/php71/ directory.

cd /etc/opt/remi/php71/

Rename the default php-fpm.conf to php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Create a new php-fpm.conf file.

sudo nano php-fpm.conf

Copy and paste the text below into the php-fpm.conf file.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-7.1-error.log
pid = /var/run/
process_control_timeout = 10s

Rename the default www.conf file in the php-fpm.d directory.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Create a new www.conf file.

sudo nano php-fpm.d/www.conf

Copy and paste the following text into the www.conf file. Change your pm.max\_children to match the number of CPUs in accordance with your VPS instance.

group = h2o
listen = /var/run/php-fpm-7.1.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Rename the default php.ini file.

sudo mv php.ini php.ini.original

Create a new php.ini file.

sudo nano php.ini

Copy and paste the following text below into the new php.ini file. Change the memory\_limit, post\_max\_size, upload\_max\_filesize and date.timezone in accordance with your VPS instance.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/var/opt/remi/php71/lib/php/session/"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Mainiet /var/opt/remi/php71/lib/php/session/direktorija grupas īpašumtiesības no apachegrupas uz h2ogrupu.

sudo chown root.h2o /var/opt/remi/php71/lib/php/session/

Izveidojiet direktoriju, kurā atradīsies PHP-FPM servera žurnāli.

sudo mkdir /var/log/php-fpm/

Iespējojiet un startējiet PHP-FPM serveri.

sudo systemctl enable php71-php-fpm 
sudo systemctl start php71-php-fpm

Iespējojiet un startējiet H2O serveri.

sudo systemctl enable h2o
sudo systemctl start h2o

Izveidojiet direktoriju, kurā index.phpatradīsies noklusējuma direktorija, kas norādīta file.diriepriekš sadaļā /var/www/

sudo mkdir /var/www/

Izveidojiet noklusējuma iestatījumu, index.phpizmantojot phpinfokomandu, lai pārbaudītu PHP.

sudo nano /var/www/

Kopējiet un ielīmējiet tālāk esošo tekstu jaunajā index.phpfailā.


Tagad atveriet pārlūkprogrammu un ievadiet servera domēna nosaukumu ( example.comvai savai instancei. Vai saņemat ziņojumu Unable to connectvai This site can’t be reachedziņojumu? CentOS noklusējuma ugunsmūra iestatījums neatļauj ienākošos savienojumus ar http portu. Lai to atvērtu, veiciet tālāk norādītās darbības.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --permanent --zone=public --add-service=https
sudo firewall-cmd --reload

Atsvaidziniet lapu savā pārlūkprogrammā ( F5), un jūs iegūsit standarta PHP informācijas lapu.

Novirzīt,, un https://example.comuz lapu, PHP-FPM 7.1.x) konfigurāciju

Pārejiet uz /etc/h2o/direktoriju.

cd /etc/h2o/

Pārdēvējiet noklusējuma vērtību h2o.confuz h2o.conf.original.

sudo mv h2o.conf h2o.conf.original

Izveidojiet jaunu h2o.conffailu.

sudo nano h2o.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu h2o.conffailā.

access-log: /var/log/h2o/access.log
compress: ON
error-log: /var/log/h2o/error.log
expires: 1 day
file.index: [ 'index.php' ]
      port: 80
          status: 301
          url: ""
      port: 80
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          status: 301
          url: ""
      port: 443
        <<: !file /etc/h2o/conf.d/ssl.conf
        certificate-file: /location/of/certificate/file/fullchain.ext
        key-file: /location/of/private/key/file/privkey.ext
        file.dir: /var/www/
        header.add: "strict-transport-security: max-age=31536000; includeSubDomains; preload"
          internal: YES
          status: 307
          url: /index.php
  extension: .php
    port: /run/php-fpm-7.1.sock
    type: unix
pid-file: /var/run/h2o/
send-server-name: OFF
user: h2o

Izveidojiet pielāgotu direktoriju, lai saglabātu noklusējuma SSL opcijas visām vietnēm, kurās tiek izmantots SSL.

sudo mkdir conf.d

Izveidojiet jaunu ssl.conffailu.

sudo nano conf.d/ssl.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu ssl.conffailā.

cipher-preference: server
dh-file: /etc/ssl/h2o/dhparam_2048.pem

Izveidojiet direktoriju, lai saglabātu dhparam_2048.pemfailu, kas katru dienu tiks atjaunots, izmantojot cronjob.

sudo mkdir /etc/ssl/h2o/

Izveidojiet jaunu regenerate_dhparamfailu.

sudo nano /etc/cron.daily/regenerate_dhparam

Kopējiet un ielīmējiet tālāk norādīto tekstu regenerate_dhparamfailā.

cd /etc/ssl/h2o
umask 022
for length in 2048
openssl dhparam -out dhparam_$length.tmp $length && mv dhparam_$length.tmp dhparam_$length.pem
chmod 444 dhparam_$length.pem

Padariet tikko izveidoto bash failu par izpildāmu.

sudo chmod +x /etc/cron.daily/regenerate_dhparam

Izpildiet bash skriptu pirmajai palaišanai, jo H2O nesāksies pareizi, ja tas netiks ģenerēts. Tas prasīs apmēram minūti vai divas, lai to ģenerētu pirmajā reizē.

sudo /etc/cron.daily/regenerate_dhparam

Lai apstrādātu PHP, ir jāinstalē un jākonfigurē PHP-FPM 7.1 dēmons. Lai instalētu PHP-FPM versiju, kas ir jaunāka par noklusējuma 5.4.x, ir jāinstalē REMI repo, kas satur PHP versijas 5.6.x, 7.0.x un 7.1.x. Ievadiet šīs komandas, lai instalētu PHP versiju 7.1.x.

sudo yum install -y
sudo yum install php71-php-fpm -y

Pārejiet uz /etc/opt/remi/php71/direktoriju.

cd /etc/opt/remi/php71/

Pārdēvējiet noklusējuma vērtību php-fpm.confuz php-fpm.conf.original.

sudo mv php-fpm.conf php-fpm.conf.original

Izveidojiet jaunu php-fpm.conffailu.

sudo nano php-fpm.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu php-fpm.conffailā.

daemonize = yes
emergency_restart_threshold = 2
emergency_restart_interval = 1m
error_log = /var/log/php-fpm/php-fpm-7.1-error.log
pid = /var/run/
process_control_timeout = 10s

Pārdēvējiet noklusējuma www.conffailu php-fpm.ddirektorijā.

sudo mv php-fpm.d/www.conf php-fpm.d/www.conf.original

Izveidojiet jaunu www.conffailu.

sudo nano php-fpm.d/www.conf

Kopējiet un ielīmējiet tālāk norādīto tekstu www.conffailā. Mainiet savu, pm.max\_childrenlai tas atbilstu CPU skaitam atbilstoši jūsu VPS instancei.

group = h2o
listen = /var/run/php-fpm-7.1.sock
listen.backlog = 65536
listen.owner = h2o = h2o
pm = static
pm.max_children = 2
pm.max_requests = 10240
user = h2o

Pārdēvējiet noklusējuma php.inifailu.

sudo mv php.ini php.ini.original

Izveidojiet jaunu php.inifailu.

sudo nano php.ini

Kopējiet un ielīmējiet tālāk esošo tekstu jaunajā php.ini file. Mainīt memory\_limit, post\_max\_size, upload\_max\_filesizeun date.timezonesaskaņā ar savu VPS instancē.

allow_url_fopen = On
always_populate_raw_post_data = -1
display_errors = Off
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
expose_php = Off
log_errors = On
memory_limit = 256M
output_buffering = 4096
post_max_size = 64M
register_argc_argv = Off
request_order = "GP"
upload_max_filesize = 64M
variables_order = "GPCS"
date.timezone = America/New_York
session.cache_limiter =
session.gc_divisor = 1000
session.hash_bits_per_character = 5
session.save_handler = files
session.save_path = "/var/opt/remi/php71/lib/php/session"
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

Mainiet /var/opt/remi/php71/lib/php/session/direktorija grupas īpašumtiesības no apachegrupas uz h2ogrupu.

sudo chown root.h2o /var/opt/remi/php71/lib/php/session/

Izveidojiet direktoriju, kurā atradīsies PHP-FPM servera žurnāli.

sudo mkdir /var/log/php-fpm/

Iespējojiet un startējiet PHP-FPM serveri.

sudo systemctl enable php71-php-fpm 
sudo systemctl start php71-php-fpm

Iespējojiet un startējiet H2O serveri.

sudo systemctl enable h2o
sudo systemctl start h2o

Izveidojiet direktoriju, kurā index.phpatradīsies noklusējuma direktorija, kas norādīta file.diriepriekš sadaļā /var/www/

sudo mkdir /var/www/

Izveidojiet noklusējuma iestatījumu, index.phpizmantojot phpinfokomandu, lai pārbaudītu PHP.

sudo nano /var/www/

Kopējiet un ielīmējiet tālāk esošo tekstu jaunajā index.phpfailā.


Tagad atveriet pārlūkprogrammu un ievadiet servera domēna nosaukumu ( example.comvai savai instancei. Vai saņemat ziņojumu Unable to connectvai This site can’t be reachedziņojumu? CentOS noklusējuma ugunsmūra iestatījums neatļauj ienākošos savienojumus ar http portu. Lai to atvērtu, veiciet tālāk norādītās darbības.

sudo firewall-cmd --permanent --zone=public --add-service=http
sudo firewall-cmd --permanent --zone=public --add-service=https
sudo firewall-cmd --reload

Atsvaidziniet lapu savā pārlūkprogrammā ( F5), un jūs iegūsit standarta PHP informācijas lapu.

Ar to mana apmācība ir beigusies. Paldies, ka izlasījāt.

