The most common response to your question would be to suggest that you use a vpn server to connect your clients to your server then to squid in a secured fashion, However, there are many other ways to achieve your goal as well, you could do it via a socks5 proxy, your clients to your server, and forward all traffic internally to your squid, and I am not certain about this next one, but I suppose in theory it could be possible to force all http traffic via https. if you did some magik on your squid proxy with ssl certs, essentially forcing an https connection from your clients to your squid. - Signed, Fix Nichols http://www.squidblacklist.org