[squid-users] host_verify_strict is not working as expected

Amos Jeffries squid3 at treenet.co.nz
Tue Aug 3 01:38:11 UTC 2021


On 2/08/21 6:12 pm, Sachin Gupta wrote:
> Hi All
> 
> I am using squid version 4.9. I did set host_verify_strict to on. As per 
> documentation in link 
> http://www.squid-cache.org/Doc/config/host_verify_strict 
> <http://www.squid-cache.org/Doc/config/host_verify_strict> The request 
> should fail if host header is different than uri.
> 
> I used this request and squid allowed the request though as per 
> documentaion, it should have returned 409. Can someone help. Logs are below.
> 

The reason you are getting 400 is that "https://..." is not a valid 
syntax for Host header. Syntax checks come first, before value checks.

Amos


More information about the squid-users mailing list