RE: [squid-users] RE: transparent https interception without mitm

From: James Harper <james_at_ejbdigital.com.au>
Date: Fri, 11 Jul 2014 12:49:33 +0000

> > Unfortunately it seems to throw the details it gathered
> > away after checking what bump to use as all I get in there is the
> > destination IP. Logging %ssl::>cert_subject just shows "-".
>
> http:/www.squid-cache.org/Doc/config/logformat/:
> %ssl::>cert_subject log the Subject field of a SSL certificate ...
>
> ... *received from the client.*
>

Oops... my bad

>
> PS. MITM starts when your description needs to use the word "intercept"
> or one of its variations.
>

Yes but in this situation squid would be no more a mitm than an L3 router would be, in terms of the content.

James
Received on Fri Jul 11 2014 - 12:49:45 MDT

This archive was generated by hypermail 2.2.0 : Fri Jul 11 2014 - 12:00:04 MDT