You DO realize that you will have to resign the remote cert, with a CA your 
clients trust, right?

[SHAMELESS PLUG] Or, buy a WatchGuard product that does HTTPS/DPI ("Deep Packet 
Inspection"). It's how we scan for malware and block sites inside of HTTPs 
connections. [/SHAMELESS PLUG].



-----Original Message-----
From: owner-openssl-us...@openssl.org on behalf of rajmohan sk
Sent: Fri 7/23/2010 4:29 AM
To: openssl-users@openssl.org
Subject: I want to build a man in the middle proxy server application. 
 
Sub : I want to build a man in the middle proxy server application. 

I have experimented so many methods to achieve this. But my application is 
failing when I tried 
to browse from the browser (IE 8 and Firefox 3.7). 

I have configured my browser proxy settings to '4433' port. My application is 
listening on this port, 
when I connect to this port from my browser, with the URL 
https://localhost:4433 is it working, only a certificate warning is there. 
When I try to connect to another secured site, the SSL_accept function is 
returning -1 and my error code is 
as follows.

"2572:error:1407609B:SSL routines:SSL23_GET_CLIENT_HELLO:https proxy 
request:.ssls23_srvr.c:391:"

I am not able to trace out the problem for many days and stucked at this point. 
Anybody please help he to
trace out this issue  
 
<http://sigads.rediff.com/RealMedia/ads/click_nx.ads/www.rediffmail.com/signatureline....@middle?>
 

<<winmail.dat>>

Reply via email to