Re: [squid-users] Block HTTPS website

From: Amos Jeffries <squid3_at_treenet.co.nz>
Date: Tue, 24 May 2011 00:04:14 +1200

On 23/05/11 22:15, Malvin Rito wrote:
> Thanks Amos. By the way my squid is currently setup as a Transparent
> Proxy do you think it will block HTTPS connections? How?

Yes. In a manner of speaking anyway.

Intercepting HTTPS into the proxy will break low-level details of the
SSL. The request will be "blocked" by SSL failures. Squid requires some
advanced and dangerous config to make HTTPS interception work (barely).

With a transparent interception proxy your firewall is the place to be
blocking HTTPS traffic.

Amos

-- 
Please be using
   Current Stable Squid 2.7.STABLE9 or 3.1.12
   Beta testers wanted for 3.2.0.7 and 3.1.12.1
Received on Mon May 23 2011 - 12:04:20 MDT

This archive was generated by hypermail 2.2.0 : Tue May 24 2011 - 12:00:03 MDT