Re: Transparent proxy errors

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Le vendredi 09 juin 2006 à 17:11 +0300, Diaa Radwan a écrit :
> >   You can't use transparent proxy with SSL cause headers are
> > encrypted and contains no useful data about destinations.
> You can use it ,there is nothing will stop iptables from forwarding the
> requests to your proxy ports.

Yes, you can forward them, but it won't work unless your HTTP proxy
handles SSL connection itself.
Usual way to handle SSL connections proxying is explicitly declare proxy
for SSL to have web client issue a CONNECT to the proxy. 


-- 
http://sid.rstack.org/
PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE
>> Hi! I'm your friendly neighbourhood signature virus.
>> Copy me to your signature file and help me spread!



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux