On 2/1/06, squid user <squid_user@xxxxxxxxxxxxx> wrote: > Hi, > > I have a Squid 2.5 stable 11 proxy forwarding traffic to an upstream proxy > based on domain. This works fine for HTTP traffic, but HTTPS traffic is > flowing directly from the downstream proxy to the internet. > > Would anyone give me any pointers as to an access list or other strategy I > can use to ensure that HTTPS traffic flows to the upstream proxy? Here's > what I have at the moment... > > acl forwardTraffic dstdomain .co.uk > cache_peer 172.21.118.118 parent 3128 0 proxy-only no-query > cache_peer_access 172.21.118.118 allow forwardTraffic ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ Try changing the above line into : never_direct allow forwardTraffic > cache_peer_access 172.21.118.118 deny all > M.