Re: [squid-users] Peeking on TLS traffic: unknown cipher returned

2016-10-22 Thread Leandro Barragan
don't like. On 21 October 2016 at 13:01, James Lay wrote: > On 2016-10-21 09:58, Leandro Barragan wrote: >> >> James, thanks for your advice! I've read your email on this list about >> LibreSSL. I tried to compile Squid with LibreSSL in the first place >>

Re: [squid-users] Peeking on TLS traffic: unknown cipher returned

2016-10-21 Thread Leandro Barragan
version of squid and libressl you used? BTW I tried with OpenSSL 1.0.2g applying the CloudFare ChaCha20 patch, but it doesn't work either, same error (unknown cipher) Thanks! On 21 October 2016 at 10:55, James Lay wrote: > On 2016-10-20 20:15, Leandro Barragan wrote: >> >>

Re: [squid-users] Peeking on TLS traffic: unknown cipher returned

2016-10-20 Thread Leandro Barragan
of OpenSSL or LibreSSL. Thanks! On 20 October 2016 at 01:01, Alex Rousskov wrote: > On 10/19/2016 12:44 AM, Leandro Barragan wrote: > >>> error:140920F8:SSL routines:SSL3_GET_SERVER_HELLO:unknown cipher returned >>> (1/-1/0) > >> I fail to see why is this happ

Re: [squid-users] Peeking on TLS traffic: unknown cipher returned

2016-10-19 Thread Leandro Barragan
sites by looking at SNI info. Thanks Leandro On 19 October 2016 at 10:42, Amos Jeffries wrote: > On 19/10/2016 7:44 p.m., Leandro Barragan wrote: >> Hi! >> >> I'm having trouble with SSL Peek & Splice in Squid 3.5.16 using > > Please upgrade to 3.5.19 or later

[squid-users] Peeking on TLS traffic: unknown cipher returned

2016-10-18 Thread Leandro Barragan
Hi! I'm having trouble with SSL Peek & Splice in Squid 3.5.16 using intercept mode. I'm trying to configure a transparent proxy (no CA installed on clients) which denies access to specific sites. I understand that if I can't Bump (my case), then I can only use SNI information from TLS "Client Hell