Re: [squid-users] HTTPS connections

From: Amos Jeffries <squid3@dont-contact.us>
Date: Mon, 08 Jan 2007 19:26:36 +1300

Huzeyfe Onal wrote:
> Hi,
> you can't use https transparently..
>
>
> On 1/8/07, Ow Mun Heng <Ow.Mun.Heng@wdc.com> wrote:
>> I know SSL connections aren't really supported, but I know it supports
>> pass through connection using the CONNECT method.
>>
>> Last night, I tried to (i have a transparent proxy setup through my
>> firewall) redirect all HTTPS(Port 443) traffic through squid and ended
>> up with this error message in the logs..
>>
>> TCP_DENIED/400 1158 NONE error:unsupported-request-method - NONE/-
>> text/html
>>
>> Am I doing something wrong??
>>
>> Thanks
>>

It's been a while since I did the setup transparently here.

But IIRC: The "always_direct allow <localnet>" config item allowed a
transparent proxy to accept regular proxy requests from the machines
defined in <localnet>.

Each client browser still needs to be setup to use it as a specific
proxy for HTTPS though. Which kind of defeats the transparent part
unless you have two classes of users.

AJ
Received on Sun Jan 07 2007 - 23:27:06 MST

This archive was generated by hypermail pre-2.1.9 : Thu Feb 01 2007 - 12:00:01 MST