Search squid archive

Re: Intercept HTTPS with dynamic certificate for clients

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi all,

I get on the web browsers : Code d'erreur : sec_error_unknown_issuer
 
Can someone help me ?


Le 19 mars 2014 à 08:53, Emmanuel LAZARO - S.IM.KO. <em.lazaro@xxxxxxxx> a écrit :

> Hi all,
> 
> I am using Squid 3.4.4 on debian wheezy compiling the sources.
> 
> I am trying to configure squid as a transparent proxy using :
> 
> https_port 3129 intercept ssl-bump generate-host-certificates=on dynamic_cert_mem_cache_size=4MB cert=/etc/squid3/CertifSignature/SquidServeurVeriSign.pem key=/etc/squid3/CertifSignature/Squid.key
> 
> The SquidServeurVeriSign.pem have been signed by verisign.
> 
> How can i avoid the alerts on firefox or safari (i am in a mac osx environment) because the alerts are spoting on every https pages :
> 
> "Connexion not certified
> 
> You asked firefox to connect... we can't confirm the connexion is secured...website identity can't be verified."
> 
> Sry for the translation...
> 
> Can someone help me ?
> 
> NB : I imported the root certificate in my firefox.
> ------
> 
> LAZARO Emmanuel






[Index of Archives]     [Linux Audio Users]     [Samba]     [Big List of Linux Books]     [Linux USB]     [Yosemite News]

  Powered by Linux