[squid-users] Squid 3.2 - Dynamic SSL certs that aren't self-signed

From: Alex Ray <alexray_at_espsolution.net>
Date: Thu, 23 Dec 2010 07:15:45 -0800

When using squid 3.2 beta with ssl-bump and dynamic certificate
generation, is it possible to have the generated certificates issued
by a trusted CA (trusted on each computer), so that browsers receive
neither the "website does not match certificate CN" or "this
certificate is self-signed/untrusted" errors? If I specify cert= with
a trusted cert in the http_port directive, then browsers complain that
the certificate does not match the website.
Received on Thu Dec 23 2010 - 15:15:51 MST

This archive was generated by hypermail 2.2.0 : Tue Dec 28 2010 - 12:00:03 MST