<html><head></head><body><div class="ydped8b095eyahoo-style-wrap" style="font-family:Helvetica Neue, Helvetica, Arial, sans-serif;font-size:16px;"><div><div><span><div class="ydp9f86917dyiv1186360994ydpf0eb02f1yahoo-style-wrap" style="font-family:Helvetica Neue, Helvetica, Arial, sans-serif;font-size:16px;">.</div></span></div><div><span></span><br></div><div>.</div><div>.</div><div>.</div><div>.</div><span><div class="ydp9f86917dyiv1186360994ydpf0eb02f1yahoo-style-wrap" style="font-family:Helvetica Neue, Helvetica, Arial, sans-serif;font-size:16px;">Hi </div></span></div><span>My problem is when i disable <span><pre>generate-host-certificates<br><span><pre>sslcrtd_program<br></pre></span>I cant redirect HTTPS requests to block err page!!</pre></span><div>I don't really understand what this configuration do!</div></span><div><span><div>What
does actually this configurations "generate-host-certificates and
dynamic-cert-mem-cach-size" do? generate cert for squid to communicate
to server or client? why when i disable it squid does not show block err
page for HTTPS requests? i don't want to use <span>sslcrtd_program db</span>
in my host and i want to block HTTPS requests based of my acl and
splice all of other requests and also show block err page to clients!</div></span><div><span><div>Which certificates stored in the sslcrtd_program directory? </div></span></div><div><span></span>If i enable generate-host-certificates haw meny prossec do i need to handate more than 1000 requests?<br></div></div><span><div>Is that possible or i have to use sslcrtd_program db?</div><div><br></div>Tank you</span></div><div><br></div></body></html>