Re: [squid-users] Configuring cache_peer to use ssl

From: Jancs <jancs_at_dv.lv>
Date: Fri, 16 May 2008 09:05:48 +0300

Quoting Henrik Nordstrom <henrik_at_henriknordstrom.net>:

> A workaround is to forward CONNECT requests over http as usual instead
> of wrapping them in yet another ssl layer. Another workaround if you
> really MUST wrap the CONNECT requests in SSL between the proxy servers
> is to offload the SSL wrapper from Squid by using stunnel. Or the better
> solution is to fix Squid to behave proper and establis the SSL wrapper
> on CONNECT requests forwarded to ssl peers just as it does in normal
> forwarded http requests...

it's clear regarding stunnel, but the seccond option is not for me - i
only know what the C is and what it is used for, not more.

btw - do you know how to start stunnel at the system's start (from
start-up script)? I am able to fire it up only manually from root shell.

Janis

----------------------------------------------------------------
This message was sent using IMP, the Internet Messaging Program.
Received on Fri May 16 2008 - 06:05:56 MDT

This archive was generated by hypermail 2.2.0 : Tue Aug 05 2008 - 01:05:13 MDT