Re: [squid-users] https facebook dstdomain acl doesn't work

From: Muhammad Yousuf Khan <sirtcp_at_gmail.com>
Date: Wed, 29 Feb 2012 16:42:23 +0500

Thanks, it means i have to shift it back to proxy mode. since i am
still using it on testing environment it wouldn't be an hurdle for me.

On Wed, Feb 29, 2012 at 9:26 AM, Amos Jeffries <squid3_at_treenet.co.nz> wrote:
> On 29/02/2012 9:27 a.m., Muhammad Yousuf Khan wrote:
>>
>> Thanks,
>>
>> if i use squid as non transparent  proxy would it work for HTTPS for
>> just blocking a domain.
>
>
> Yes. HTTPS tunnel CONNECT requests have a special type of URL, which only
> contains deatinstion domain name and port. You can use the domain name to
> block access in a forward proxy. Only the URL path and HTTP header details
> are hidden inside the encryption.
>
> Amos
Received on Wed Feb 29 2012 - 11:42:31 MST

This archive was generated by hypermail 2.2.0 : Wed Feb 29 2012 - 12:00:06 MST