• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Squid3 not starting with ssl interception enabled

Scheduled Pinned Locked Moved Cache/Proxy
10 Posts 5 Posters 1.6k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M
    mark81
    last edited by Sep 25, 2015, 9:21 PM

    Hi,

    I have a working setup with squid3 & antivirus. When I enable ssl interception and restart my firewall squid3 doesn't start.
    If I disable ssl interception and restart all works well.

    I'm not sure how I can troubleshoot this. Hope somebody can help.

    Thanks!

    1 Reply Last reply Reply Quote 0
    • D
      doktornotor Banned
      last edited by Sep 26, 2015, 5:55 PM

      Noone will help without the logs.

      1 Reply Last reply Reply Quote 0
      • M
        mark81
        last edited by Sep 27, 2015, 2:05 PM

        I understand. Which logs do I need to provide? Sorry, I'm really new with the product and all of the features.

        1 Reply Last reply Reply Quote 0
        • T
          thermo
          last edited by Sep 27, 2015, 11:07 PM

          /var/squid/log/cache.log

          1 Reply Last reply Reply Quote 0
          • M
            mark81
            last edited by Sep 29, 2015, 12:58 PM

            ok it now seems I'm completely blind. when monitoring the squid log with tail -f /var/squid/log/cache.log nothing happens when enabling ssl interception and restarting squid service. the service doesn't start and no new lines are logged to the cache.log. when disabling ssl interception and restarting squid I see new lines logged just fine.

            My settings for the ssl interception part are:

            Enable SSL filtering : enabled
            SSL Interception interfaces: 2 interfaces (1 bridged interface, 1 normal interface) - same settings on transparent http proxy which works
            ssl proxy port empty
            CA - my internal root CA which is trusted on all my devices and imported (ofcourese) in pfsense

            rest of the settings are all default. no modifications to sslcrtd children,remote cert checks or cerificate adapt.

            What am I doing wrong?

            Kind regarsd,

            Mark

            1 Reply Last reply Reply Quote 0
            • K
              KOM
              last edited by Sep 29, 2015, 2:07 PM

              What am I doing wrong?

              Well, you should be looking in access.log for squid's web activity.  Cache.log is a service status log.

              1 Reply Last reply Reply Quote 0
              • M
                mark81
                last edited by Sep 30, 2015, 7:35 AM

                But if the service doesn't start after ssl interception. is the access log any good?

                1 Reply Last reply Reply Quote 0
                • K
                  KOM
                  last edited by Sep 30, 2015, 1:47 PM

                  I misunderstood your issue.  Doktornotor has made a bunch of changes to Squid.  You may want to jettison what you had and try again with the fixed updates.  Also, seriously consider getting rid of SSL Interception via Transparent mode.  Explicit proxy works much better with less fussing around.

                  1 Reply Last reply Reply Quote 0
                  • D
                    doktornotor Banned
                    last edited by Sep 30, 2015, 1:49 PM

                    Yeah, definitely retry with 0.3.6 (or later) package. And +1 on the MITM thing.

                    1 Reply Last reply Reply Quote 0
                    • E
                      ernanijr
                      last edited by Mar 9, 2016, 1:25 AM Mar 9, 2016, 1:15 AM

                      @mark81:

                      Hi,

                      I have a working setup with squid3 & antivirus. When I enable ssl interception and restart my firewall squid3 doesn't start.
                      If I disable ssl interception and restart all works well.

                      I'm not sure how I can troubleshoot this. Hope somebody can help.

                      Thanks!

                      Same thing does not start when I enable ssl…...

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received