[squid-users] Squid SSL Bump

Amos Jeffries squid3 at treenet.co.nz
Mon Apr 25 18:39:22 UTC 2016


On 25/04/2016 2:34 p.m., skeetz9r wrote:
> UPDATE **
> 
> On more digging it seems like the SSL server is using SHA 1 and that may be
> the issue here. Any way around that?
> 

Check out the options your OpenSSL library supports. It may or may not
support SHA1 being added to the allowed hashes list. You will need to do
that as well as adding the broken cert to the set loaded by
sslproxy_cafiles directive.

Amos



More information about the squid-users mailing list