-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Against this backdrop, even a bump SSL security seems a masterpiece. 24.08.2016 18:32, Antony Stone пишет: > On Wednesday 24 August 2016 at 14:26:48, Yuri Voinov wrote: > >> 24.08.2016 18:23, Antony Stone пишет: >>> On Wednesday 24 August 2016 at 14:18:46, Yuri Voinov wrote: >>>> No one CA do not issue signing CA for subject, which is not CA itself. >>>> >>>> So, op wants impossible thing. >>> >>> Why would one need a signING certificate just to create an SSL connection >>> between the browser and Squid? >>> >>> Surely one merely needs a valid signED certificate, same as you would >>> put on a web server to set up secure connections to it? >>> >>> OP is not intercepting secure traffic, nor making HTTP sites look to >>> the browser like HTTPS ones. >> >> Then I do not understand what he wants op. > > He wants to configure his browser to connect to the proxy over an SSL > connection, and then inside this secure connection send standard HTTP and > HTTPS requests, just as a browser would do over an unsecured connection to the > proxy on Squid's standard port 3128. > > It's nothing to do with whether either the client or the destination server > believe the web content itself to be secured with SSL/TLS. > > See "Encrypted browser-Squid connection" at the bottom of > http://wiki.squid-cache.org/Features/HTTPS > > > Antony. > -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQEcBAEBCAAGBQJXvZT/AAoJENNXIZxhPexG2NQH/3zgESU+lH6DAOGxvB/9IPUa P9OUKg4Ss9sRj8l1zUhAxy1Gf5A9vbX0qxUKF7KhhwsmUU1BSG+F2ocbouG4YGwJ VNeyPSLhsQ9AF83OZEaaov4cra9YuYSk7pGxm4SdafTYDyPU96UCcj5MwEQfRzjq TgB7GVrhGQ7TalEjGKGW8qP6nI1apriEkKXNCbEvm6Q3tpIjp72cx/LuQv/pu03x BOFpZoUxzn61a2JUV4+lUcz6lmeji3kcTSWhuMBgE+W8klqxRYGOtVTGwNLv08N2 v1HYYI05BrCtqVYaPXAfKNxgqzBIS8X7fFSf14JrnpsF0W6d994g5La3EnOpZ/4= =kNOJ -----END PGP SIGNATURE----- |
Attachment:
0x613DEC46.asc
Description: application/pgp-keys
_______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users