RE: [squid-users] Capturing HTTPS traffic

From: Alfonso Alejandro Reyes Jimenez <aareyes_at_scitum.com.mx>
Date: Fri, 3 Feb 2012 12:20:15 -0600

Hi.

If you have the certif�cate information you may use ssldump to decode the information. I hope this helps.

Regards.

-----Mensaje original-----
De: PS [mailto:packetstack_at_gmail.com]
Enviado el: viernes, 03 de febrero de 2012 12:11 p.m.
Para: squid-users_at_squid-cache.org
Asunto: [squid-users] Capturing HTTPS traffic

Hello,

I am currently running the following version of Squid:

Squid Cache: Version 3.2.0.14-20120202-r11500 configure options: '--enable-ssl' '--enable-ssl-crtd'

I configured it so that certs are generated on the fly and I am able to get to HTTPS websites without getting a certificate warning.

I want to do a packet capture of all HTTPS traffic while in cleartext. I would think that it can be done on the Squid box. Is that possible?

If I use tcpdump on the Squid box, I only see the encrypted traffic. Do I have to recompile Squid with another configuration option to be able to do what I want to do?

Thanks
Received on Fri Feb 03 2012 - 18:20:21 MST

This archive was generated by hypermail 2.2.0 : Fri Feb 03 2012 - 12:00:04 MST