[squid-users] Have issue with "https_port ssl-bump intercept"

Amos Jeffries squid3 at treenet.co.nz
Thu Aug 16 12:03:05 UTC 2018


On 16/08/18 23:17, Amos Jeffries wrote:>
> The above config will only whitelist after the server cert is known and
> should terminate TLS without any HTTP(S) error page being delivered to
> clients - but can only do so if http_access does _not_ cause a "deny"
> part way through the handshake (eg from on-whitelisted SNI names).

Sorry that should read:  "from non-whitelisted SNI names"

Amos


More information about the squid-users mailing list