[squid-users] SQUID Proxy - SSL Certificate error

Amos Jeffries squid3 at treenet.co.nz
Sun Oct 21 16:39:20 UTC 2018


On 18/10/18 3:49 PM, Amos Jeffries wrote:
> On 18/10/18 2:31 AM, Vayalpadu, Vedavyas wrote:
>> Hi All,
>>
>> We have an existing SSL certificate for a WebShop URL. It has an
>> external IP Natted to a Load Balancer and has 2 reverse-squid proxies
>> configured for load balancing.
>>
>>  
>>
>> Now we need to on-board a new URL with same external IP, Same Load
>> Balancers and r-Squid proxy servers ? Is it possible.
>>
>>  
>>
>> I have uploaded the new URL certificate and restarted the squid proxy
>> services, when I try to access the URL iam getting below error, and
>> Certificate error as below.
>>
>>  
>>
>> Can anyone help me on this ?
>>
> 
> OpenSSL builds of Squid do not support multiple certificates per
> listening port.
> 
> Squid-4 does support multiple certificates when built with GnuTLS
> instead of OpenSSL. This is still an experimental feature though, so YMMV.
> 

FYI: I have now added a config example to the wiki documenting this
GnuTLS feature at
<https://wiki.squid-cache.org/ConfigExamples/Reverse/HttpsVirtualHosting>.

Amos


More information about the squid-users mailing list