Thank you for your detailed answer. As you said, Squid does not support
rewrite-url after ssl-bumped. but I don't understand why it is designed this
way. If I want to modify the ssl-bumped returned content, not through 302,307
http redirect url? can I use ecap or other methods to achieve it?
Hi Jason!
Squid is a complex piece of software, which is deployed in a vast number of
scenarios, some are simpler and some are intensely adversarial and trickier.
Securing squid is similar to any other public-facing complex service; it's
unfortunately not something that can be explained with a few