On 25/04/2016 2:34 p.m., skeetz9r wrote: > UPDATE ** > > On more digging it seems like the SSL server is using SHA 1 and that may be > the issue here. Any way around that? > Check out the options your OpenSSL library supports. It may or may not support SHA1 being added to the allowed hashes list. You will need to do that as well as adding the broken cert to the set loaded by sslproxy_cafiles directive. Amos _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users