Re: [squid-users] SSL<->SSL<->unencrypted, (was: provide external access)

From: Henrik Nordstrom <hno@dont-contact.us>
Date: Mon, 24 Mar 2003 23:21:40 +0100

mlister wrote:
>
> Henrik I'm making progress do to your help.
>
> I've setup two squid servers for use as follows:
>
> client->SQUID1->SQUID2->webserver
>
> SQUID1 has the following:
> https_port 443 cert=/etc/httpd/conf/ssl.crt/server.crt
> key=/etc/httpd/conf/ssl.key/server.key
>
> SQUID2 has no SSL configuration.
>
> From the client an SSL connection is established and maintained during
> navigation as expected.
>
> How can I determine that communication between SQUID1 and SQUID2 is SSL ??

With the above configuration it is not.

To use SSL between SQUID1 and SQUID2 you must configure SQUID2 as an SSL
server just as SQUID1, and also configure SQUID1 to use SSL when
speaking to SQUID2 (requires the discussed SSL update patch, or to wait
for Squid-3).

Regards
Henrik
Received on Mon Mar 24 2003 - 15:24:42 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:14:19 MST