
Caddy is an open-source web server that supports both static and modern web applications, with automatic HTTPS enabled for all linked domain names. Written in GO, Caddy provides user-friendly configuration directives, allowing it to function as a web server, reverse proxy, or load balancer to serve web applications on your server.
This article guides you through the process of installing Caddy on Ubuntu 20.04 and securely serving web applications.
Before you begin:
Have an Ubuntu 20.04 server.
Set up a new A record for your domain that points to the server IP address.
Access the server using SSH as a non-root user with sudo privileges.
Caddy is not included in the default Ubuntu 20.04 APT repositories. However, it can be installed either from source files or by adding the latest repository information to your server. Follow the steps below to download the latest Caddy repository details and install the application on your server.
Add the latest Caddy GPG Key to your server.
Add the Caddy repository to your APT sources.
Update the server package index.
Install Caddy.
View the installed Caddy version to verify that the installation is successful.
Output:
Allow incoming connections to the HTTP port 80 through the firewall.
Restart the firewall to apply changes.
Access your server IP to test access to the Caddy web server.
Confirm that the default Caddy webpage displays in your browser.
Enable Caddy to start at boot time.
Start the Caddy web server.
View the Caddy system service status to verify that the application is running.
Output:
Caddy stores its configuration files in the /etc/caddy directory by default and allows Caddyfile configurations from any location on your server. Follow the steps below to create a new Caddy virtual host to serve web application files from the /var/www/example.com directory on your server.
Create the /var/www/example.com web application files directory.
Create a new HTML application file index.html.
Add the following code to the file.
Save and close the file.
Switch to the Caddy configuration files directory.
Back up the default Caddyfile configuration.
Create a new Caddyfile configuration.
Add the following configurations to the file.
Save and exit the file.
The Caddy configuration above creates a new virtual host for your domain example.com. Here’s what each part does:
example.com: Defines a new virtual host profile using your domain or IP address.tls: Associates an email address with Let's Encrypt for SSL certificate generation requests.root: Specifies the directory containing the web application files for the virtual host.file_server: Enables the file server for serving web application files. The index directive sets the default file to be served when accessing your domain.log: Configures logging for access and error details to a specified file, such as /var/log/caddy/example.log.Test the Caddy configuration for errors.
Output:
Reload the Caddy web server to apply your configuration changes.
Caddy automatically enables HTTPS to secure all connections using SSL certificates for virtual host profiles with valid domains on your server. Follow the steps below to secure the Caddy web server by restricting access to the Caddyfile configurations and preventing unauthorized changes by unintended users.
Grant the Caddy user full privileges to the /etc/caddy directory.
Grant the Caddy user read and write permissions to the Caddyfile while disabling access for other system users.
Long list the /etc/caddy directory to verify the permission changes.
Output:
Caddy uses HTTP port 80 and HTTPS port 443, depending on your Caddyfile configurations, to serve files on the server. Follow the steps below to allow access to both Caddy ports through the firewall and enable network connections to the web server.
View the UFW status and verify that it's active.
If the status is inactive, allow the SSH port 22 and enable UFW.
Allow incoming connections to the HTTPS port 443.
Reload the firewall to apply changes
Access your domain using a browser such as Chrome to verify that Caddy serves your virtual host web application files.
If you receive a connection error, view the Caddy configuration logs to verify the error details.
You have successfully installed the Caddy web server on your Ubuntu 20.04 server and configured a virtual host profile to serve web application files.
0 Comments
Be the first to comment and share your perspective with the community.