Re: [squid-users] HTTPS_PORT AND SSL CERT

2020-05-27 Thread Julien TEHERY
I retried everything possible in terms of order in the pem file. from my workstation, if i do "openssl s_client -showcerts -connect mysquid.mycompany.com:8443" i only get one certificate/issuer, but the same command on same server but different port (apache listenning on 443), i correctly get 2

[squid-users] SSL certificate not working for windows update

2020-05-27 Thread saiyan_gc
Hi, I have proxy server that use self signed certificate/basic username/password authentication for the http port 2128. Some how the windows update is not working for my proxy box. The proxy server is working fine with wget in powershell. Below are my error log, not sure why it's failing at 503.

Re: [squid-users] ssl_bump problems with pypi servers

2020-05-27 Thread hanxie
Hi Alex thanks for the response! I have posted a link to a larger log snippet that was the more full trace from the previous request. Let me know if I could provide anything else as well. squid_debug.txt -- Se

Re: [squid-users] Squid cache with SSL

2020-05-27 Thread Eliezer Croitoru
Hey Amos, I am not sure I understand the if and what are the risks of this subject.From what I understand until now Google doesn’t use any DH concept on specific keys.I do believe that there is a reason for the obviates ABORT.The client is allowed and in most cases the software decides to ABORT if

Re: [squid-users] ssl_bump problems with pypi servers

2020-05-27 Thread Alex Rousskov
On 5/26/20 7:43 PM, hanxie wrote: > We have tried turning on verbose debugging and I think I have found the logs > in which squid encounters an error with the request: I did not find anything particularly suspicious in that log snippet. I suggest posting a link to a much larger, compressed log sa

Re: [squid-users] HTTPS_PORT AND SSL CERT

2020-05-27 Thread Julien TEHERY
Unfortunately, i've just compiled/ and built deb packages a fresh new squid 4.11 Now SSL support should be fully operational, but the certificate i still not showing the intermediate. I just tried https_port 8443 tls-cert=/etc/squid/wildcard.mycompany.com.pem where in the pem file i have in this