- 论坛徽章:
- 0
|
squid正向透明代理内网https问题,大家帮忙看看,谢谢!
参照网上一些文章
#openssl req -new -keyout /etc/squid/key.pem -nodes -x509 -days 3650 -out
/etc/squid/cert.pem
#$IPT -t nat -A PREROUTING -s $LAN_IP -i $LAN -p tcp --dport 443 -j DNAT --to 10.0.0.3:50402
/etc/squid/squid.conf #add
https_port 10.0.0.3:50402 transparent cert=/etc/squid/cert.pem key=/etc/squid/key.pem
访问mail.google.com
出现
Secure Connection Failed
www.google.com uses an invalid security certificate.
The certificate is not trusted because it is self signed.
The certificate is not valid for any server names.
(Error code: sec_error_untrusted_issuer)
* This could be a problem with the server's configuration, or it could be someone trying
to impersonate the server.
* If you have connected to this server successfully in the past, the error may be
temporary, and you can try again later.
怎么解决呢?
或者说怎么实现内网用户https的透明代理。 |
|