Return-Path: Delivered-To: apmail-trafficserver-users-archive@www.apache.org Received: (qmail 90425 invoked from network); 13 Nov 2010 23:29:18 -0000 Received: from unknown (HELO mail.apache.org) (140.211.11.3) by 140.211.11.9 with SMTP; 13 Nov 2010 23:29:18 -0000 Received: (qmail 71313 invoked by uid 500); 13 Nov 2010 23:29:49 -0000 Delivered-To: apmail-trafficserver-users-archive@trafficserver.apache.org Received: (qmail 71225 invoked by uid 500); 13 Nov 2010 23:29:48 -0000 Mailing-List: contact users-help@trafficserver.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: users@trafficserver.apache.org Delivered-To: mailing list users@trafficserver.apache.org Received: (qmail 71217 invoked by uid 99); 13 Nov 2010 23:29:48 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Sat, 13 Nov 2010 23:29:48 +0000 X-ASF-Spam-Status: No, hits=2.9 required=10.0 tests=HTML_MESSAGE,SPF_NEUTRAL X-Spam-Check-By: apache.org Received-SPF: neutral (athena.apache.org: local policy) Received: from [71.6.165.248] (HELO kramer.ogre.com) (71.6.165.248) by apache.org (qpsmtpd/0.29) with ESMTP; Sat, 13 Nov 2010 23:29:41 +0000 Received: from zaboo.ogre.com (c-24-8-250-209.hsd1.co.comcast.net [24.8.250.209]) (authenticated bits=0) by kramer.ogre.com (8.14.3/8.14.3) with ESMTP id oADNTJbC000504 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Sat, 13 Nov 2010 15:29:20 -0800 X-DKIM: Sendmail DKIM Filter v2.8.3 kramer.ogre.com oADNTJbC000504 Message-ID: <4CDF1F4F.9060007@apache.org> Date: Sat, 13 Nov 2010 16:29:19 -0700 From: Leif Hedstrom User-Agent: Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.1.9) Gecko/20100430 Fedora/3.0.4-2.fc11 Thunderbird/3.0.4 MIME-Version: 1.0 To: users@trafficserver.apache.org CC: Hoang Nguyen Vi Cam Violon Subject: Re: Forward proxy get trouble with https References: <595506.94562.qm@web112616.mail.gq1.yahoo.com> In-Reply-To: <595506.94562.qm@web112616.mail.gq1.yahoo.com> Content-Type: multipart/alternative; boundary="------------030001070604060702050603" This is a multi-part message in MIME format. --------------030001070604060702050603 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit On 11/11/2010 07:26 PM, Hoang Nguyen Vi Cam Violon wrote: > Hi, > > Currently I configure the TS as a forward proxy by change these fields to: > CONFIG proxy.config.reverse_proxy.enabled INT 0 > CONFIG proxy.config.url_remap.remap_required INT 0 > I also configured a cache path for TS and there was a "cache.db" has > been created. > Everything works correctly except HTTPS. > For ex: if I go to sourceforge.net then I click on log in link, which > redirect me to https log in page. Unfortunately, the browser tells me > that "Unnable to connect". But if I click "try again" many times (five > or more). The page can be displayed but incorrect layout. > > So please help me to solve this. Thank you very much and have a nice day. > > Sincerely, > Cam Hoang > > I'll take a look at this on Monday or Tuesday. I assume in this setup, your client sends CONNECT requests to the proxy for the HTTPS requests? -- Leif --------------030001070604060702050603 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit On 11/11/2010 07:26 PM, Hoang Nguyen Vi Cam Violon wrote:
Hi,

Currently I configure the TS as a forward proxy by change these fields to:
CONFIG proxy.config.reverse_proxy.enabled INT 0
CONFIG proxy.config.url_remap.remap_required INT 0
I also configured a cache path for TS and there was a "cache.db" has been created.
Everything works correctly except HTTPS.
For ex: if I go to sourceforge.net then I click on log in link, which redirect me to https log in page. Unfortunately, the browser tells me that "Unnable to connect". But if I click "try again" many times (five or more). The page can be displayed but incorrect layout.

So please help me to solve this. Thank you very much and have a nice day.

Sincerely,
Cam Hoang


I'll take a look at this on Monday or Tuesday. I assume in this setup, your client sends CONNECT requests to the proxy for the HTTPS requests?

-- Leif

--------------030001070604060702050603--