<!DOCTYPE html>
<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body>
    Ano docker, primo mikrotik by to asi dokazal ale pouze v http, sice
    se<br>
    mi to nepodarilo, ale myslim, ze nejakym krkolomnym zpusobem pomoci
    <br>
    skriptu by to slo, nicmene by to bylo asi desne pomale a slozite.<br>
    Jasne docker spravna volba taky v nem par veci mam na mikrotiku...<br>
    <br>
    Zdenek Aster<br>
    <br>
    <div class="moz-cite-prefix">Dne 02.01.2024 v 9:58 Martin Vancl
      napsal(a):<br>
    </div>
    <blockquote type="cite"
cite="mid:CAB7eFgnaYbHqJRBRn45hD2XUbjw05ch2Ffg5S366CuT1YQULxQ@mail.gmail.com">
      <meta http-equiv="content-type" content="text/html; charset=UTF-8">
      <div dir="auto">
        <div>
          <div>RouterOS 7.x umí na ARM routerech docker.</div>
          <div dir="auto">Takže by mělo jít si v dockeru spustit
            nginx/apache a dělat přímo v routeru reverzní proxy.</div>
          <div dir="auto"><br>
          </div>
          <div dir="auto">Jak takhle v mikrotiku za 1500 Kč provozuju v
            dockeru zabbix proxy.</div>
          <div><br>
          </div>
          <div data-smartmail="gmail_signature">--<br>
            S pozdravem<br>
            Ing. Martin Vancl<br>
            <br>
            e-mail:  <a href="mailto:tux.martin@gmail.com"
              moz-do-not-send="true" class="moz-txt-link-freetext">tux.martin@gmail.com</a><br>
            web:  <a href="http://www.vancl-it.cz"
              moz-do-not-send="true">www.vancl-it.cz</a></div>
          <br>
          <div class="gmail_quote">
            <div dir="ltr" class="gmail_attr">Dne út 2. 1. 2024 9:27
              uživatel Martin Záruba <<a href="mailto:swz@volny.cz"
                moz-do-not-send="true" class="moz-txt-link-freetext">swz@volny.cz</a>>
              napsal:<br>
            </div>
            <blockquote class="gmail_quote"
style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
              <div>
                <p><font face="Arial">Ne, že bych to potřeboval, ale jen
                    pro zajímavost.? Šel by donutit Mikrotik, aby to
                    podle dns směroval na různé lokální adresy?</font><br>
                </p>
                <pre cols="72">Martin Záruba</pre>
                <div>Dne 1.1.2024 v 16:08 Zdeněk Aster napsal(a):<br>
                </div>
                <blockquote type="cite"> A já přidám konfiguraci u Vás
                  na servru
                  <div>
                    <div><span style="background-color:transparent"><br>
                      </span></div>
                    <div><span style="background-color:transparent">A.A.A.A
                        - vnitrni IP adresa serveru syna</span><br>
                    </div>
                    <div>B.B.B.B - vnitrni IP adres servru co dela proxy</div>
                    <div><br>
                    </div>
                    <div>konfigurace Vaseho servru co dela proxy</div>
                    <div><span style="background-color:transparent"><VirtualHost
                        *:80></span><br>
                    </div>
                    <div>    ServerName <a href="http://domenasyna.cz"
                        target="_blank" rel="noreferrer"
                        moz-do-not-send="true">domenasyna.cz</a></div>
                    <div>    ProxyPreserveHost Off</div>
                    <div>    ProxyRequests Off</div>
                    <div>    ProxyPreserveHost Off</div>
                    <div>    ProxyPass / <a href="http://A.A.A.A:80/"
                        target="_blank" rel="noreferrer"
                        moz-do-not-send="true">http://A.A.A.A:80/</a></div>
                    <div>    ProxyPassReverse / <a
                        href="http://B.B.B.B/" target="_blank"
                        rel="noreferrer" moz-do-not-send="true">http://B.B.B.B/</a></div>
                    <div></VirtualHost></div>
                    <div><br>
                    </div>
                    <div>konfigurace serveru syna</div>
                    <div>
                      <div><VirtualHost *:80></div>
                      <div><br>
                      </div>
                      <div><IfModule mod_rpaf.c></div>
                      <div><br>
                      </div>
                      <div>        RPAF_enable On</div>
                      <div>        RPAF_proxy_ips B.B.B.B</div>
                      <div>        RPAF_proxyips B.B.B.B</div>
                      <div>        RPAF_SetHostName On</div>
                      <div>        RPAF_Header X-Forwarded-For</div>
                      <div>#       RPAF_Header X-Real-IP</div>
                      <div>        RPAF_SetHTTPS On</div>
                      <div><br>
                      </div>
                      <div>        RPAFenable On</div>
                      <div>        RPAFproxy_ips B.B.B.B</div>
                      <div>        RPAFproxyips B.B.B.B</div>
                      <div>        RPAFSetHostName On</div>
                      <div>        RPAFHeader X-Forwarded-For</div>
                      <div>#       RPAFHeader X-Real-IP</div>
                      <div>        RPAFSetHTTPS On</div>
                      <div></IfModule></div>
                      <div>        ServerName <span
                          style="background-color:transparent"><a
                            href="http://domenasyna.cz" target="_blank"
                            rel="noreferrer" moz-do-not-send="true">domenasyna.cz</a></span></div>
                      <div>        ServerAdmin webmaster@localhost</div>
                      <div>        DocumentRoot /var/www/domena</div>
                      <div><br>
                      </div>
                      <div></VirtualHost></div>
                    </div>
                    <div><br>
                    </div>
                    <div>To RPAF je aby se korektne predavala venkovni
                      IP a nemeli stranky jen IP adresu proxy. Ale mel
                      jsem s tim</div>
                    <div>nejaky problem proto tam jsou konfigurace s
                      podtrzitkem i bez nevim ktera je korektni......
                      Mam tam obe.</div>
                    <div>Pokud by cloveku nevadilo ze na webovky to jde
                      jen s proxy tak by to tam byt nemuselo....</div>
                    <div><br>
                    </div>
                    <div>Asi to nemam uplne idealne, ale taky jsem se s
                      tim patlal vselijak.</div>
                    <div>Samozrejme musi byt do apache povolene moduly
                      co jsou potreba.</div>
                    <div><br>
                    </div>
                    <div>Zdenek Aster</div>
                    <div> ---------- Původní e-mail ----------<br>
                      Od: Jindroush <a
                        href="mailto:jindroush@seznam.cz"
                        target="_blank" rel="noreferrer"
                        moz-do-not-send="true"><jindroush@seznam.cz></a><br>
                      Komu: HW-news <a href="mailto:hw-list@list.hw.cz"
                        target="_blank" rel="noreferrer"
                        moz-do-not-send="true"><hw-list@list.hw.cz></a><br>
                      Datum: 1. 1. 2024 14:33:30<br>
                      Předmět: Re: OT Jak rozdelit na routeru provoz
                      stejneho portu na dve ruzne IP <br>
                      <blockquote>Tohle se da resit ruznou kombinaci
                        reverznich proxy a ruznych http serveru. <br>
                        Nebo pomoci "name based virtual hosting" na
                        apache <br>
                        <a
href="https://httpd.apache.org/docs/2.4/vhosts/name-based.html"
                          target="_blank" rel="noreferrer"
                          moz-do-not-send="true"
                          class="moz-txt-link-freetext">https://httpd.apache.org/docs/2.4/vhosts/name-based.html</a>
                        <br>
                        <br>
                        Takze: router neresi nic - ten predava traffic
                        portu 80 a 443 dal <br>
                        dovnitr na "neco". <br>
                        <br>
                        1) A to "neco" je bud reverzni proxy cista, tj.
                        nedela nic jineho a <br>
                        podle domeny dotazuje vnitrni http servery. <br>
                        2) Nebo je to web server se dvemi ruznymi
                        vetvemi pres "name based virtual". <br>
                        3) Je mozna i kombinace - hlavni apache vraci
                        "vas" server pro vasi <br>
                        domenu a reverzne-proxuje synuv server pro jeho
                        domenu. Pak muzete mit <br>
                        dva ruzne Apache s dvema ruznymi PHP. <br>
                        <br>
                        Pokud mate odpor k PHP 7, delate 1 nebo 3 <br>
                        Pokud chcete syna na samostatnem apache, delate
                        1 nebo 3 <br>
                        <br>
                        V obou pripadech bych ja sel pres predstrcenou
                        reverzni proxy, ktera by <br>
                        nejjednoduseji mohla resit i HTTPS -
                        automatizovane pres LetsEncrypt a <br>
                        dal by po vnitrni siti posilala http requesty.
                        Takovej domaci Cloudflare ;-) <br>
                        <br>
                        J. <br>
                        <br>
                        On 01.01.2024 13:40, Admin HWnews wrote: <br>
                        > Zdravim vsechny v Novem roce a hned prvni
                        den mi prinesl tezkou hlavu... <br>
                        > <br>
                        > Pres svatky jsem slibil synkovi zprovoznit
                        webhosting jeho vlastni <br>
                        > domeny u me doma na serveru...takze si
                        nekolik dni ladil sablonu do <br>
                        > Wordpressu, ja jsem nahodil Wordpress na
                        svuj webserver, aby me to <br>
                        > vzapeti hned vysplouchlo, ze je nutne PHP
                        7.0 a vice... Rikam si ok <br>
                        > neni problem...nahodil jsem dalsi virtual s
                        Apachem a s vyssi verzi <br>
                        > PHP (aspon se to nebude motat na mem
                        Apache)...vsechno jsme to <br>
                        > rozbehali...dnes ze zaplatime domenu a me
                        doslo, ze nevim jak na <br>
                        > domacim routeru predavat port 80 podle toho
                        co se jedna za domenu na <br>
                        > konkretni IP uvnitr site. Samozrejme
                        skleroza zapracovala a rikam no <br>
                        > tak holt to dam ke me na webserver a nebude
                        to oddelene...takze jsem <br>
                        > se vratil do bodu nula ...je treba vyssi
                        verze PHP nez 7.0. <br>
                        > <br>
                        > A ted si marne lamu hlavu jak zaridit, aby
                        kdyz prijde na router <br>
                        > zvenku pozadavek na port 80 se jeste resilo
                        pro jakou to je domenu az <br>
                        > az pak predalo na spravnou IP. <br>
                        > <br>
                        > Uvnitr site to neni problem, protoze tam
                        mam pod palcem BIND a DNS. <br>
                        > <br>
                        > P.S. Urcite to nechci resit instalaci vice
                        verzi PHP na jeden Apache. <br>
                        > <br>
                        > S pozdravem <br>
                        > RV <br>
                        >
                        _______________________________________________
                        <br>
                        > HW-list mailing list  -  sponsored by <a
                          href="http://www.HW.cz" target="_blank"
                          rel="noreferrer" moz-do-not-send="true">www.HW.cz</a>
                        <br>
                        > <a href="mailto:Hw-list@list.hw.cz"
                          target="_blank" rel="noreferrer"
                          moz-do-not-send="true"
                          class="moz-txt-link-freetext">Hw-list@list.hw.cz</a>
                        <br>
                        > <a
href="http://list.hw.cz/mailman/listinfo/hw-list" target="_blank"
                          rel="noreferrer" moz-do-not-send="true"
                          class="moz-txt-link-freetext">http://list.hw.cz/mailman/listinfo/hw-list</a>
                        <br>
                        <br>
                        <br>
                        -- <br>
                        Jindroush <a href="mailto:jindroush@seznam.cz"
                          target="_blank" rel="noreferrer"
                          moz-do-not-send="true"><jindroush@seznam.cz></a>
                        <br>
                        <br>
                        _______________________________________________
                        <br>
                        HW-list mailing list - sponsored by <a
                          href="http://www.HW.cz" target="_blank"
                          rel="noreferrer" moz-do-not-send="true">www.HW.cz</a>
                        <br>
                        <a href="mailto:Hw-list@list.hw.cz"
                          target="_blank" rel="noreferrer"
                          moz-do-not-send="true"
                          class="moz-txt-link-freetext">Hw-list@list.hw.cz</a>
                        <br>
                        <a
href="http://list.hw.cz/mailman/listinfo/hw-list" target="_blank"
                          rel="noreferrer" moz-do-not-send="true"
                          class="moz-txt-link-freetext">http://list.hw.cz/mailman/listinfo/hw-list</a>
                        <br>
                      </blockquote>
                    </div>
                  </div>
                  <br>
                  <fieldset></fieldset>
                  <pre>_______________________________________________
HW-list mailing list  -  sponsored by <a href="http://www.HW.cz"
                  target="_blank" rel="noreferrer"
                  moz-do-not-send="true">www.HW.cz</a>
<a href="mailto:Hw-list@list.hw.cz" target="_blank" rel="noreferrer"
                  moz-do-not-send="true" class="moz-txt-link-freetext">Hw-list@list.hw.cz</a>
<a href="http://list.hw.cz/mailman/listinfo/hw-list" target="_blank"
                  rel="noreferrer" moz-do-not-send="true"
                  class="moz-txt-link-freetext">http://list.hw.cz/mailman/listinfo/hw-list</a>
</pre>
                </blockquote>
              </div>
              _______________________________________________<br>
              HW-list mailing list  -  sponsored by <a
                href="http://www.HW.cz" rel="noreferrer noreferrer"
                target="_blank" moz-do-not-send="true">www.HW.cz</a><br>
              <a href="mailto:Hw-list@list.hw.cz" target="_blank"
                rel="noreferrer" moz-do-not-send="true"
                class="moz-txt-link-freetext">Hw-list@list.hw.cz</a><br>
              <a href="http://list.hw.cz/mailman/listinfo/hw-list"
                rel="noreferrer noreferrer" target="_blank"
                moz-do-not-send="true" class="moz-txt-link-freetext">http://list.hw.cz/mailman/listinfo/hw-list</a><br>
            </blockquote>
          </div>
        </div>
      </div>
      <br>
      <fieldset class="moz-mime-attachment-header"></fieldset>
      <pre class="moz-quote-pre" wrap="">_______________________________________________
HW-list mailing list  -  sponsored by <a class="moz-txt-link-abbreviated" href="http://www.HW.cz">www.HW.cz</a>
<a class="moz-txt-link-abbreviated" href="mailto:Hw-list@list.hw.cz">Hw-list@list.hw.cz</a>
<a class="moz-txt-link-freetext" href="http://list.hw.cz/mailman/listinfo/hw-list">http://list.hw.cz/mailman/listinfo/hw-list</a>
</pre>
    </blockquote>
    <br>
  </body>
</html>