Re: Squid 2.5 DEVEL with openssl

From: Henrik Nordstrom <hno@dont-contact.us>
Date: Wed, 24 Oct 2001 05:45:06 +0200

You are using a very old squid.conf syntax from the early days of
Squid-SSL.

How SSL is configured in Squid-2.5 was changed on May 4 to support more
than one https_port. For details, see the https_port directive in
squid.conf, specifically the cert= and key= arguments.

Regards
Henrik Nordström
Squid Hacker

squid wrote:
>
> Hi friends I have a follow issue :
>
> I was compiled a Squid 2.5 DEVEL in Linux Red Hat 7.1 with follow
> lines ./configure --prefix=/usr/local/squid --enable-linux-netfilter
> --enable-ipf-transparent --enable-ssl --with-openssl
>
> and openssl-0.9.6 24 Sep 2000
> and this lines in squid.conf
> https_port 3129
> ssl_certificate /usr/local/squid/certi/server.crt
> ssl_key /usr/local/squid/certi/server.key
>
> but the message when I run squid is ...
>
> 2001/10/23 22:52:38| parseConfigFile: line 6 unrecognized:
> 'ssl_certificate /usr/local/squid/etc/server.crt'
> 2001/10/23 22:52:38| parseConfigFile: line 7 unrecognized: 'ssl_key
> /usr/local/squid/etc/server.key'
>
> and message in /var/log/messages is ...
>
> Oct 23 22:52:39 leo squid[4384]: Squid Parent: child process 4390
> started
> Oct 23 22:52:44 leo (squid): Failed to acquire SSL certificate:
> error:0200100E:system library:fopen:Bad address
> Oct 23 22:52:44 leo squid[4384]: Squid Parent: child process 4390
> exited due to signal 6
>
> I need use Squid 2.5 with SSL
>
> Thanks ...
>
>
>
>
Received on Tue Oct 23 2001 - 21:44:51 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:14:35 MST