Understood. not altering the bytes. My question is simple: if using squid to do splicing proxy action of https sessions, is there a squid configuration to block/drop the session if the remote server's certificate is signed by a 'untrusted' CA? thanks. George -- Sent from: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-Users-f1019091.html _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users