[squid-users] tls_key_log

Amos Jeffries squid3 at treenet.co.nz
Sat Apr 27 07:52:13 UTC 2024


On 25/04/24 19:57, Andrey K wrote:
> Hello,
> 
> Does squid 6.9 allow you to log TLS 1.3 keys so that you can then 
> decrypt traffic using Wireshark?
> I found that there was an issue earlier with using tls_key_log to 
> decrypt TLS 1.3: 
> https://lists.squid-cache.org/pipermail/squid-users/2022-January/024424.html <https://lists.squid-cache.org/pipermail/squid-users/2022-January/024424.html>
> 
> I tried using tls_key_log on Squid 6.9 to decrypt TLS 1.3, but 
> without success.

You answer your own question here.


> Is work on TLS 1.3 logging support still ongoing?
> 

Not specifically. As I understand it logging is not the issue - Squid 
cannot log something it cannot see. TLS support has quieted down in 
recent times, but not stopped.


Cheers
Amos


More information about the squid-users mailing list