Re: Squid transparent proxy /iptables (Yahoo messenger/Gmail/Https not works)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,
    Thanks for the reply, but i don't want to really proxy https
traffic i now it is secure, but i want to give access to the websites
which are using https as my internet connection is connected on the
linux box which is having installed BIND DNS, Squid Proxy, and
configured iptables i just want to know, how to allow https websites &
Yahoo messenger which uses socks for connecting to it's servers.

Thanks
Yogesh

On 1/28/08, Eljas Alakulppi <Buzer@xxxxxxxxx> wrote:
> You can't transpently proxy https traffic. Search "man-in-the-middle
> attack" with Google/your favorite search egine for explanation.
>
> Yogesh Patil <yogesh@xxxxxxxxxxxxx> kirjoitti Sun, 27 Jan 2008 21:11:30
> +0200:
>
> > Hello,
> >      I am using SQUID 2.6.STABLE17 with fedora core 8, & BIND
> > DNS SERVER configured on the same box, i have configured squid as
> > transparent proxy with all default settings , and applied iptables
> > rule by using the following
> > command
> >
> > iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT
> > --to-port 3128
> >
> >      so the problem is that i am able to browse websites very well,
> > but Gmail, Yahoo Messenger, MSN Messenger etc.. and all the websites
> > using https not works, what would be the issue ?
> >
> > Regards,
> > Yogesh Patil
> > -
> > To unsubscribe from this list: send the line "unsubscribe netfilter" in
> > the body of a message to majordomo@xxxxxxxxxxxxxxx
> > More majordomo info at  http://vger.kernel.org/majordomo-info.html
>
>
>


-- 
Regards,
Yogesh Patil
Technotux Solutions
33/114, Gandhi Nagar,
Jilha Peth, Jalgaon - 425001
Maharashtra, INDIA
Phone :- +91-257-2235596
Mobile:- +91-9890931432, 9422778329
-
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html

[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux