Re: [squid-users] Server-first SSL bump in Squid 3.5.x

2015-03-18 Thread Dan Charlesworth
Right, I see. So I’ve got a special ACL to always allow that Test URL for the sake of our certcheck … but it’s doing it by dstdomain. So if there are rules to say “always redirect to the certificate splash page if you can’t connect to the URL”, then it will never pass it because the initial CON

Re: [squid-users] Server-first SSL bump in Squid 3.5.x

2015-03-18 Thread Amos Jeffries
On 19/03/2015 6:36 p.m., Dan Charlesworth wrote: > Hey y’all > > Finally got 3.5.2 running. I was under the impression that using server-first > SSL bump would still be compatible, despite all the Peek & Splice changes, > but apparently not. Hopefully someone can explain what might be going wron

[squid-users] Server-first SSL bump in Squid 3.5.x

2015-03-18 Thread Dan Charlesworth
Hey y’all Finally got 3.5.2 running. I was under the impression that using server-first SSL bump would still be compatible, despite all the Peek & Splice changes, but apparently not. Hopefully someone can explain what might be going wrong here ... Using the same SSL Bump config that we used for