ssl_verify_client: require
ssl_crl: '/etc/pki/tls/certs/odt-cacrl.pem'
ssl_ca: '/etc/pki/tls/certs/odt-root-ca.pem'
- custom_fragment: 'SSLRequire %%{ich-trickse}{SSL_CLIENT_S_DN_O} eq "ODT"'
+ custom_fragment_ssl: 'SSLRequire %%{ich-trickse}{SSL_CLIENT_S_DN_O} eq "ODT"'
rewrites_non_ssl:
- https:
comment: 'almost all to https'
rewritecond:
- - '%{ich-trickse}{REQUEST_URI} !^/.\.html'
+ - '%%{ich-trickse}{REQUEST_URI} !^/.\.html'
rewrite_rule:
- '^(.*)$ https://int-odt-daimler-com.pixelpark.net$1 [L,R=301]'
proxy_preserve_host: true