[squid-users] ssl_bump problem with tw.bid.yahoo.com in transparent proxy

Hsuan Yu windflower1201 at gmail.com
Thu Apr 2 00:52:45 UTC 2015


I've tried squid 4.0.0 / squid 3.5.3 / squid 3.3.5
these have the same problem.


>What version of Squid you are using?

>01.04.15 13:06, Yu-Hsuan Liao пишет:
>>* Hello Everyone,
*>>>>* I got  'ssl_error_bad_cert_domain' message from browser when I was trying
*>>* to bump tw.bid.yahoo.com <http://tw.bid.yahoo.com> in transparent mode
*>>>>* I found that the certificate is signed to
tw.otplogin.reg.yahoo.com <http://tw.otplogin.reg.yahoo.com>, which
*>>* should be signed to tw.bid.yahoo.com <http://tw.bid.yahoo.com>
*>>>>* but for now I can't bypass using the following configure:
*>>>>* acl yahoo_url tw.otplogin.reg.yahoo.com
<http://tw.otplogin.reg.yahoo.com> tw.bid.yahoo.com
<http://tw.bid.yahoo.com>
*>>* ssl_bump none yahoo_url
*>>>>* yet everything is OK when I use forward proxy, the certificate is correct
*>>* signed to tw.bid.yahoo.com <http://tw.bid.yahoo.com>
*>>>>* any ideas?*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20150402/bb3880c1/attachment.html>


More information about the squid-users mailing list