Re: [squid-users] Reverse proxy with SSL.

From: Simon White <simon@dont-contact.us>
Date: Mon, 8 Apr 2002 12:04:45 +0000

08-Apr-02 at 08:01, Barty, Joe (jbarty@daas.dla.mil) wrote :
> I have a server running HTTPS only on port 443, can I configure my Squid server
> to reverse proxy?

HTTPS cannot be proxied. It is a direct client/server connection due to
the key exchange mechanism inherent in SSL and secure communications.

Proxying would require caching the keys, which is inherently insecure, and
is not allowed by the https protocol, I assume.

-- 
[Simon White. vim/mutt. simon@mtds.com. GIMPS:62.25% see www.mersenne.org]
Not only does Jesus save, but he makes nightly off-site backups.
[Linux user #170823 http://counter.li.org. Home cooked signature rotator.]
Received on Mon Apr 08 2002 - 06:04:49 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:07:29 MST