Re: [squid-dev] Host header forgery detection when peeking for SNI

2016-10-25 Thread Christos Tsantilas
On 10/25/2016 02:40 PM, Amos Jeffries wrote: On 25/10/2016 11:54 p.m., Dave Lewthwaite wrote: Hi, We are running into an issue that has come up a few times on the mailing lists - host header forgery detection when using SSL peek in order to include SNI logging in access logs. (Clients operati

Re: [squid-dev] Host header forgery detection when peeking for SNI

2016-10-25 Thread Amos Jeffries
On 25/10/2016 11:54 p.m., Dave Lewthwaite wrote: > Hi, > > We are running into an issue that has come up a few times on the mailing > lists - host header forgery detection when using SSL peek in order to include > SNI logging in access logs. (Clients operating in transparent mode). > > As far a

[squid-dev] Host header forgery detection when peeking for SNI

2016-10-25 Thread Dave Lewthwaite
Hi, We are running into an issue that has come up a few times on the mailing lists - host header forgery detection when using SSL peek in order to include SNI logging in access logs. (Clients operating in transparent mode). As far as I can tell I have narrowed it down to ClientRequestContext::