[squid-dev] RFC 3.5.0.3

Amos Jeffries squid3 at treenet.co.nz
Fri Dec 19 03:37:47 UTC 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 19/12/2014 6:16 a.m., Tsantilas Christos wrote:
> On 12/18/2014 03:14 PM, Amos Jeffries wrote: Thanks to the issue
> behind rev.13760 ("Support http_access denials of SslBump 'peeked'
> connections.") I intend to release a new beta approx. 20hrs from
> this writing. I hope this will be the final beta.
> 
> If there are any outstanding issues that need to be in the next
> beta and can be applied to trunk before then please commit ASAP or
> request a hold (I can wait 2-3 days if necessary, but rather get
> this out sooner).
> 
>> Please wait 2-3 days... I am working in a ssl peek-and-splice bug
>> which is important. It will be ready soon. Sorry for this.

Don't be. The whole release cycle has been made a mess of by the
server outage in Sept.

Is it anything to do with the squid-users@ reports about
non-interception HTTPS->HTTP proxies suddenly becoming HTTPS->HTTPS
after upgrade?


> 
>> Also I applied a patch the "revno:13764" (Fix DONT_VERIFY_DOMAIN
>> ssl flag) which fixes a small squid bug exist in previous
>> releases too...
> 

;) I was sort of hoping we could get people to stop using those
DONT_VERIFY_* flags. A few more years with nobody complaining about
that bug and we can justify removal. Oh well its in now.

Amos
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (MingW32)

iQEcBAEBAgAGBQJUk52LAAoJELJo5wb/XPRj674IALyPwUKHxlRchk5an5tHQ2Iv
KT0NbZhtmUXDaYcMXsFIgGkiMngt8+C/vEt2YfSYqbrx+J0I5XnUliZgnmn8dMze
7jPWfEofuVdLUQU80xyVZI0/Vbg6g4dEn6MxR7XinQjsMvO7OeBYYM0J3axxsSAn
TgKmmRn8IwG0pQ8fauScRGmwWYtJRAwWxHt4R3EpucbR91xhDZLw8W2ziOqFrHcm
q9fiDm0Ct9K6TpuxJ6kRFahAkDlUoHq71yJtKfhhVLegu98j592XW5QHkU+tXBMU
3RIRvgNgj2lmiwHVlOYtvXCfA1Okh8Exo9f4VwNytBiqTQ0amk2BnTMfTgpc2Ds=
=GTo4
-----END PGP SIGNATURE-----


More information about the squid-dev mailing list