On Fri, Nov 21, 2014 at 6:53 PM, Jason Pyeron <[email protected]> wrote:

> > -----Original Message-----
> > From: Mohan Rao
> > Sent: Friday, November 21, 2014 6:08
> >
> > Hello, all!
> >
> > Squid3-dev + Squidguard set up, and they're blocking pages
> > through HTTP and HTTPS just fine. The problem is, it's
> > throwing certificate errors at about every secure page that
> > is opened, despite having the CA trusted.
>
> Can you post an example certificate?
>
> >
> > For example, if they try going to mail.google.com, it throws
> > this error:
>
> Have you tested with openssl from the command line of a client?
>
> >
> > "Technical Details
> >
> >         accounts.google.com uses an invalid security certificate.
> >
> > The certificate is not trusted because no issuer chain was provided.
>
> Sounds like the root CA was not delivered with the generated certificate,
> can you post the squid configs?
>
> >
> > (Error code: sec_error_unknown_issuer)"
> >
> >
> > Any idea how to make this work?
>
> Which browsers is this happening in?
>
>
>
> --
> -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
> -                                                               -
> - Jason Pyeron                      PD Inc. http://www.pdinc.us -
> - Principal Consultant              10 West 24th Street #100    -
> - +1 (443) 269-1555 x333            Baltimore, Maryland 21218   -
> -                                                               -
> -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
> This message is copyright PD Inc, subject to license 20080407P00.
>
> _______________________________________________
> List mailing list
> [email protected]
> https://lists.pfsense.org/mailman/listinfo/list
>

Attachment: https_ssl.crt
Description: application/x509-ca-cert

_______________________________________________
List mailing list
[email protected]
https://lists.pfsense.org/mailman/listinfo/list

Reply via email to