• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Squid + https

Scheduled Pinned Locked Moved Cache/Proxy
52 Posts 5 Posters 6.6k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    DaddyGo @viberua
    last edited by Jul 17, 2020, 1:26 PM

    @viberua

    Squid works with an internal intermediate certificate
    you can't use example Lets' E or other

    because of what is described above in this thread......

    like:
    e6d85e91-20c0-4c72-994d-63130e5c6ab0-image.png

    d885c2db-48b4-4c2b-9e0c-6b930da4372b-image.png

    50fd8d7b-58eb-4c5c-ac9f-46ffaaa060e6-image.png

    Cats bury it so they can't see it!
    (You know what I mean if you have a cat)

    V 1 Reply Last reply Jul 17, 2020, 1:41 PM Reply Quote 0
    • T
      techtester-m @viberua
      last edited by Jul 17, 2020, 1:35 PM

      @viberua You need to "become" a CA (a local one of course) and have your own Public Key & Private Key in order for Squid to encrypt-decrypt.

      1 Reply Last reply Reply Quote 0
      • V
        viberua @DaddyGo
        last edited by Jul 17, 2020, 1:41 PM

        @DaddyGo when i try to create an intermediate CA, the list of signing CA is empty
        171ae991-dfe2-4980-8db2-c2a85ef36382-image.png but as i said i have our domain CA server and added his CA cert to CA settings
        ff98755a-9058-42da-bc51-7c14b4c4d448-image.png

        T D 2 Replies Last reply Jul 17, 2020, 1:47 PM Reply Quote 0
        • T
          techtester-m @viberua
          last edited by techtester-m Jul 17, 2020, 1:49 PM Jul 17, 2020, 1:47 PM

          @viberua said in Squid + https:

          but as i said i have our domain CA server and added his CA

          Won't work.

          Do this from scratch:
          Screen Shot 2020-07-17 at 16.44.04.png

          And this is what you should see:
          Screen Shot 2020-07-17 at 16.43.38.png

          D 1 Reply Last reply Jul 17, 2020, 1:59 PM Reply Quote 0
          • D
            DaddyGo @viberua
            last edited by Jul 17, 2020, 1:53 PM

            @viberua

            you are doing something wrong... 😉
            because it works very well in pfSense

            just watch squidSSL2 I just created for the sake of the test...

            30181433-5b3d-43d3-9b81-6da6f43a1408-image.png

            d8d8b847-ff3e-4824-878f-53a96e8f0017-image.png

            Cats bury it so they can't see it!
            (You know what I mean if you have a cat)

            1 Reply Last reply Reply Quote 0
            • D
              DaddyGo @techtester-m
              last edited by Jul 17, 2020, 1:59 PM

              @techtester-m

              😒
              I like you bro, but it is not appropriate to speak into an ongoing conversation...

              forum etiquette

              Cats bury it so they can't see it!
              (You know what I mean if you have a cat)

              T 1 Reply Last reply Jul 17, 2020, 2:02 PM Reply Quote 0
              • T
                techtester-m @DaddyGo
                last edited by techtester-m Jul 17, 2020, 2:03 PM Jul 17, 2020, 2:02 PM

                @DaddyGo
                Ok...I just saw notifications of his questions jump in my email so it caught my attention and just wanted to help.
                But I accept your point. Have a great one :), I'm out. No expert anyway lol

                D 1 Reply Last reply Jul 17, 2020, 2:04 PM Reply Quote 0
                • D
                  DaddyGo @techtester-m
                  last edited by Jul 17, 2020, 2:04 PM

                  @techtester-m

                  nothing happened...
                  we taught you about these a few days ago
                  I'm glad, you learned 🖐

                  Cats bury it so they can't see it!
                  (You know what I mean if you have a cat)

                  1 Reply Last reply Reply Quote 1
                  • G
                    Gertjan
                    last edited by Gertjan Jul 17, 2020, 2:23 PM Jul 17, 2020, 2:10 PM

                    @viberua

                    Your image :

                    50323089-19ad-45f3-ad02-7df622380ee3-image.png

                    This is mine :

                    f55f3978-8c03-401a-b616-9fa142b31276-image.png

                    More in detail :
                    You :

                    b8584d75-a4ee-465a-a725-0404f69e458a-image.png

                    Me :

                    a6d744be-bde0-4f14-bd53-02ec2c917072-image.png

                    What is your pfSense version or what ?

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    D 1 Reply Last reply Jul 17, 2020, 2:17 PM Reply Quote 0
                    • D
                      DaddyGo @Gertjan
                      last edited by Jul 17, 2020, 2:17 PM

                      @Gertjan said in Squid + https:

                      What is your pfSense version or what ?

                      legitimate question anyway ✋

                      Cats bury it so they can't see it!
                      (You know what I mean if you have a cat)

                      1 Reply Last reply Reply Quote 0
                      • A
                        Abdou Ahmed
                        last edited by Aug 1, 2020, 10:39 PM

                        @DaddyGo
                        Hi
                        how are you . i just want to ask if i can use pfsense proxy with mikrotik server
                        clearly . i wannot to add a certificat in users phone . just add it in mikrotik
                        to Enable SSL filtering in my network
                        i tray to that alot and have no result

                        D 1 Reply Last reply Aug 4, 2020, 10:10 AM Reply Quote 0
                        • D
                          DaddyGo @Abdou Ahmed
                          last edited by Aug 4, 2020, 10:10 AM

                          @Abdou-Ahmed said in Squid + https:

                          just add it in mikrotik

                          well, please specify this, please what kind of Mikrotik???
                          I'm pretty prepared in the "picture" - Mikrotik...
                          (all our CATV traffic is provided by Mikrotik devices)

                          Cats bury it so they can't see it!
                          (You know what I mean if you have a cat)

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                            [[user:consent.lead]]
                            [[user:consent.not_received]]