Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid & HTTPS port forward

    Scheduled Pinned Locked Moved NAT
    4 Posts 2 Posters 2.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nrw
      last edited by

      If I configure browser to use squid as proxy - all working fine. But when I configure browser to connect directly to the Internet and forward HTTPS to squid by NAT - it doesn't work. Any ideas? Problem only for HTTPS. HTTP forward - work correctly.

      1 Reply Last reply Reply Quote 0
      • marcellocM
        marcelloc
        last edited by

        @nrw:

        If I configure browser to use squid as proxy - all working fine. But when I configure browser to connect directly to the Internet and forward HTTPS to squid by NAT - it doesn't work. Any ideas? Problem only for HTTPS. HTTP forward - work correctly.

        You can't transparent proxy HTTPS. You need men-in-the-middle atack/technique to intercept https communication forging server certificate.

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • N
          nrw
          last edited by

          You can't transparent proxy HTTPS

          Are you talking about "Transparent proxy" option in squid or HTTPS NAT port forward configuration?
          In my case "Transparent proxy" is disabled and I use only NAT port forward.

          1 Reply Last reply Reply Quote 0
          • marcellocM
            marcelloc
            last edited by

            Both are transparent proxy configuration as it will forward http connections to squid.

            Treinamentos de Elite: http://sys-squad.com

            Help a community developer! ;D

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.