Re: [squid-users] CONNECT over HTTPS doesn't work.

From: Henrik Nordstrom <henrik_at_henriknordstrom.net>
Date: Sat, 03 Apr 2010 22:22:11 +0200

lör 2010-04-03 klockan 17:10 +0200 skrev Krist van Besien:

> This worked before I enabled https on both sides of the link. But
> without https the password that the local proxy uses to authenticate
> to the remote proxy gets send in the clear, which I don't want.
> Therefore I configured ssl.
>
> With ssl enabled it only works when I request http pages. However,
> when I try https I see how the local proxy performs a "CONNECT" on the
> parent proxy in the US, but the US proxy throws an error.

This is a known bug/defect. Not sure there is a bug report on it
however. If you can't find one please file one.

  http://bugs.squid-cache.org/

The bug is that Squid's handling of CONNECT can't handle ssl enabled
peers (ssl flag ignored when processing a CONNECT request).

> Is maybe my local proxy attempting to do the "CONNECT" over a plain
> http on the https port?

It is.. which it should not.

Regards
Henrik
Received on Sat Apr 03 2010 - 20:19:17 MDT

This archive was generated by hypermail 2.2.0 : Sun Apr 04 2010 - 12:00:03 MDT