In my existing config, i have: # delay filtering decisions until we get to bumped requests http_access allow CONNECT safe_ports http_access deny CONNECT I understand adding this line that you suggested as it's not already there. http_access deny !safe_ports However, i don't understand why i would need to add this (http_access deny CONNECT !SSL_Ports ) given the two lines above in the existing config. I'm probably just misunderstanding how this works. Thank you for the help! -- Sent from: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-Users-f1019091.html _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users