[Cialug] squic3 peek and splice

Andrew Denner linux-list at upeke.com
Tue Feb 20 21:43:09 UTC 2018


Assuming that you are trying to wrap a old server, you should be able to
use a reverse proxy using either Haproxy or ngenx to do the TLS.

On Tue, Feb 20, 2018 at 2:44 PM, L. V. Lammert <lvl at omnitec.net> wrote:

> Trying to figure out a way to proxy ssl outbound connections from an old
> server to extend the TLS 1.0 sunset next week, .. it *looks* like squid
> 3.5 peek and splice will do what we need (recreate the outbouhd ssl
> connection using the TLS 1.2 libraries on the proxy machine), but this is
> apparently not very common and examples are few and far between.
>
> Don't suppose anyone has dealt with a similar situation given the TLS 1.0
> deadline next week?
>
>         TIA!
>
>         Lee
> _______________________________________________
> Cialug mailing list
> Cialug at cialug.org
> http://cialug.org/mailman/listinfo/cialug
>


More information about the Cialug mailing list