Re: [squid-users] Reverse proxy with remote ssl

From: Amos Jeffries <squid3_at_treenet.co.nz>
Date: Wed, 27 May 2009 11:15:33 +1200 (NZST)

> Good morning,
>
> I have been searching high and low for an answer to my question, and a
> method of implementing. However I haven't had any luck! Perhaps someone
> can
> help me!
>
> I have installed a reverse proxy using Squid 3.0 STABLE8. My aim is to
> allow

Please upgrade to at least STABLE12. There are major security issues in
earlier versions.

> the use of the SSL certificate on the web server and not on Squid. I have
> an
> Apache Web sever running on a Windows Server, hence the reason for the
> Proxy. The proxy is in the DMZ. The Web Server is configured to use https
> on
> port 443. This works fine internally. However I can't seem to get squid to
> allow the https connection. I get a malformed web page.
>
> Is what I am attempting possible? Or will squid only work if the SSL cert
> in
> installed on the squid server?

Yes its possible. And used by a lot of people.

The wiki has some good (if long) examples...

http://wiki.squid-cache.org/ConfigExamples/Reverse/BasicAccelerator
http://wiki.squid-cache.org/ConfigExamples/Reverse/SslWithWildcardCertifiate

Amos
Received on Tue May 26 2009 - 23:15:43 MDT

This archive was generated by hypermail 2.2.0 : Wed May 27 2009 - 12:00:02 MDT