On Friday, 11 April 2014 6:29 PM, Amos wrote: > It seems to be something in firefox was buggy and they have a workaround > coming out in version 29.0, whether that will fix the warnign display or > just allow people to ignore/bypass it like other cert issues I'm not > certain. > Amos Ok, but then how come Firefox did not throw warning display just yesterday? Squid version and configuration were exact same yesterday. Unfortunately I can not switch OpenSSL back to older version else I would have checked if squid "mimicked" key_usage in that version as well or not? Amm