[squid-users] http/s acl in a reverse proxy environment

From: Emilio Casbas <ecasbas@dont-contact.us>
Date: Wed, 07 Mar 2007 17:26:40 +0100

We are having some problems making specific acls in our reverse proxy
configuration.

We need to have a URL resource which should be accessed via HTTPS, not HTTP.

acl segura url_regex -i ^https://www.accelserver.es/prueba_seguro/
acl nosegura url_regex -i ^http://www.accelserver.es/prueba_seguro/

http_access allow segura
http_access deny nosegura all

And the result is that the URL resource is always denied, We have seen
on the reverse proxy logs that the request arrives always as http,
though we request it via https.

Example:

 From the client.
#wget --no-check-certificate https://www.accelserver.es/prueba_seguro/

On the reverse proxy log.
client - - [07/Mar/2007:17:16:43 +0100] "GET
http://www.accelserver.es/prueba_seguro/ HTTP/1.0" 403 3597 TCP_DENIED:NONE

Why is the proxy log request HTTP when we request with HTTPS?

Thanks
Emilio C.
Received on Wed Mar 07 2007 - 09:27:09 MST

This archive was generated by hypermail pre-2.1.9 : Sat Mar 31 2007 - 13:00:01 MDT