[squid-users] SQUID3 HTTPs forward proxy and sha256/512 authentication

Anton Radkevich anton at radkevich.info
Tue Feb 3 20:06:48 UTC 2015


Thanks for quick reply,
We don't need ssl bumping, or isn't it possible to configure by another
way, without using ssl bumping?

What's about authentication using modern hash algorithms sha256/512?

Anton
03 февр. 2015 г. 22:58 пользователь "Yuri Voinov" <yvoinov at gmail.com>
написал:

>
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> http://wiki.squid-cache.org/ConfigExamples/Intercept/SslBumpExplicit
>
> 04.02.2015 1:03, Anton Radkevich пишет:
> >
> > Hi everyone,
> >
> > Could you please help me with configuration Squid3 as forward HTTPs
> proxy?
> >
> > Is it possible to configure it in such way?
> >
> > What we do need is a fully encrypted HTTPS forward proxy that can handle
> HTTP or HTTPS connection AND uses authentication.
> >
> > so just to be clear the connection flow will look like:
> >
> > browser <Encrypted Tunnel> Server <HTTP or HTTPS connection> Destination
> >
> > where <Encrypted Tunnel> is probably some form of HTTPS connection for
> support with the browser PAC
> >
> > Also, for client auth, can we used more "modern" hashing algorithms like
> sha256/512? md5 is old and collision prone at this point.
> >
> > Thank you in advance!
> >
> >
> >
> > _______________________________________________
> > squid-users mailing list
> > squid-users at lists.squid-cache.org
> > http://lists.squid-cache.org/listinfo/squid-users
>
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v2
>
> iQEcBAEBAgAGBQJU0ShIAAoJENNXIZxhPexGUg8H/3BGE1zXXDB5I8FxQPzEZVws
> rq5MrxRoA0SjMkwOsNkmRaKkIJpiC6GsMVvkxoFgy4K3S/d5OhPd5TC6wlQk6xvf
> 5gOBArogKLZ/iOJiRR3cNvxsnUpjxTpZwRq6PXbTxd7u0M9NxtONva5bIkUdFJVU
> aeMXZnoWJZJgrE8tcBDqsoDei8gILOT7wC0mTDV3uAJHnu728xy0oRpFq7/Osl/r
> SwNi81p2sjGi/z5VDBrE/4JcfJsDsoIzI/6AIjyw6XdbQRx7QTDD213UJnqt2uQA
> VddSYZp+hL5DQXhun+NSiwhpsgkmDj04hExsaPUXrZokxopOf/EAQ6ilQ2qDZ5c=
> =pMq4
> -----END PGP SIGNATURE-----
>
>
> _______________________________________________
> squid-users mailing list
> squid-users at lists.squid-cache.org
> http://lists.squid-cache.org/listinfo/squid-users
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20150203/f937bc64/attachment.html>


More information about the squid-users mailing list