[squid-users] Squid splitting SSL Closure Alert packet

From: Ravi Malghan <[email protected]>
Date: Mon, 3 Jul 2006 09:45:58 -0700 (PDT)

Hi: multiple users intermittently get "Page Cannot be
Displayed" when using IE to access a web server via
SSL through Netcache proxy. When we access the server
without the squid proxy in the path, users donot have
any problems.

We captured traces on the client and the server side.
It looks like server sends a SSL Closure alert with
TCP flags FIN, PSH flags set. But when the proxy
forwards this alert to client browser, it sends a SSL
Closure Alert with PSH flag set and then another
packet with FIN flag set.

1. any idea why squid proxy seperates this out into
two packets eventhough the server sent the whole thing
in one packet
2. Can squid be configured not to split the packet?

Thanks
Ravi

__________________________________________________
Do You Yahoo!?
Tired of spam? Yahoo! Mail has the best spam protection around
http://mail.yahoo.com
Received on Mon Jul 03 2006 - 10:46:05 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Aug 01 2006 - 12:00:01 MDT