Re: [squid-users] sharing generated certs between squid instances

2023-08-29 Thread Alex Rousskov
On 8/26/23 1:53 PM, Brendan Kearney wrote: list members, i have a couple squid instances that are performing bump/peek/splice and generating dynamic certs.  i want to share the certs that are generated by the individual instances across the rest of them, via NFS or some shared mechanism.  so,

Re: [squid-users] Squid ssl_bump splice configuration

2023-08-29 Thread Ben Goz
ב"ה I managed to get the ssl splice configurations to work but when I'm splicing for example: play.google.com I see in cache log the following: 2023/08/29 22:54:53.688 kid1| 33,2| client_side.cc(3214) fakeAConnectRequest: fake a CONNECT request to force connState to tunnel for ssl-bump 2023/08/2

Re: [squid-users] How to upgrade correctly?

2023-08-29 Thread Amos Jeffries
You should only need to: * stop squid * backup your existing installation (as mentioned by Eliezer) * install the current Debian "squid-openssl" package * run "squid -k parse" to check for squid.conf settings upgrade * manually check what "/opt/squid/var" was being used for; - any co

Re: [squid-users] Squid ssl_bump splice configuration

2023-08-29 Thread Amos Jeffries
On 30/08/23 07:57, Ben Goz wrote: ב"ה I managed to get the ssl splice configurations to work but when I'm splicing for example: play.google.com I see in cache log the following: 2023/08/29 22:54:53.688 kid1| 33,2| client_side.cc(3214) fakeAConnectRequest: fake a CON