[squid-users] Squid4 with GnuTLS - specify ciphers or disable protocols

Martin Hoffmann m.hoffmann.bs at gmail.com
Fri Nov 9 18:04:14 UTC 2018


I'm using squid 4.4 as remote proxy for an https server.
Squid 4.4 comes from Debian testing and is compiled with --with-gnutls (no
openssl support).

How can I disable certain cipher suites or protocols (like TLS 1.0) ?

>From my understanding I should add tls-min-version=1.1 to https_port - but
that is ignored...?
Where can I add GnuTLS priority strings to disable certain ciphers ?

I guess Documentation about https_port is somewhat misleading as it often
refers to the openssl config.

Thanks in advanced for any help.

Regards, Martin
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20181109/8df8e2e6/attachment.html>


More information about the squid-users mailing list