Re: [squid-users] Squid 6.10 on Fedora 40 cannot intercept and bump SSL Traffic

2024-08-20 Thread Alex Rousskov
On 2024-08-19 19:32, NgTech LTD wrote: > curl -v -k https://www.youtube.com/ 1724109013.783      0 192.168.78.252 NONE_NONE/000 0 - error:invalid-request - HIER_NONE/- - - OK, let's focus on this curl interception test. It feels like your Squid is receiving some bytes it cannot fully grok. W

Re: [squid-users] Squid 6.10 on Fedora 40 cannot intercept and bump SSL Traffic

2024-08-20 Thread Alex Rousskov
On 2024-08-20 06:35, ngtech1...@gmail.com wrote: Attached a link for the pcap file that might shed some light on the issue from a technical perspective That link does not work for me: Nothing is shown but a page with generic background and a "get your own free account" signature at the bottom

Re: [squid-users] How to add extra header in response in squid

2024-08-20 Thread Alex Rousskov
On 2024-08-20 06:27, nikhil deshpande wrote: We have two open ports in squid. Port 1 is transparent proxy with configuration like below http_port 127.0.0.1:12121 I assume you are using one of the interception modes (i.e. either "intercept" or "tproxy") in the above port configuration. Por

Re: [squid-users] Squid 6.10 on Fedora 40 cannot intercept and bump SSL Traffic

2024-08-20 Thread ngtech1ltd
Attached a link for the pcap file that might shed some light on the issue from a technical perspective: https://cloud.hisstory.org.il/apps/maps/s/Mw8Cb8QLYto83rK Eliezer ___ squid-users mailing list squid-users@lists.squid-cache.org https://lists.squid

[squid-users] How to add extra header in response in squid

2024-08-20 Thread nikhil deshpande
Hi tea, We are using squid as proxy. We have two open ports in squid. Port 1 is transparent proxy with configuration like below http_port 127.0.0.1:12121 Port 2 is cache proxy which cache all GET calls with configuration like below http_port 127.0.0.1:12122 ssl-bump generate-host-certificates=