Re: SSL transparent proxy hack?

From: Amos Jeffries <squid3@dont-contact.us>
Date: Tue, 08 Apr 2008 09:52:23 +1200

anesthes@cisdi.com wrote:
>
> Hi Henrik,
>
> Is this a 3.x only option or will it work in 2.6 as well?

3.1+ only.

Amos

>
> I tried redirecting to a local https_port on the same daemon as
> http_port, but
> it wouldn't even listen on the socket I configured.
>
> Perhaps I should try harder..
>
> -- Joe
>
> Quoting Henrik Nordstrom <henrik@henriknordstrom.net>:
>
>> tis 2008-04-08 klockan 01:19 +0800 skrev Adrian Chadd:
>>> There's stuff in Squid-3 (sslbump) for pulling apart the SSL stream.
>>
>> That's for proxied request.
>>
>> For transparen interception what you can do is to redirect the traffic
>> to an https_port using the "transparent" option. Works, but isn't really
>> useful for obvious security reasons..
>>
>> Regards
>> Henrik
>>
>>
>
>
>

-- 
Please use Squid 2.6.STABLE19 or 3.0.STABLE4
Received on Mon Apr 07 2008 - 15:52:09 MDT

This archive was generated by hypermail 2.2.0 : Wed Apr 30 2008 - 12:00:07 MDT