Quantcast
Channel: HAProxy community - Latest topics
Viewing all articles
Browse latest Browse all 4731

Set whitelist for TLS interception

$
0
0

Hello,

My current frontend is configured like this:

bind *:443 ssl crt <cert file> ca-sign-file <ca-sign-file>.

It intercepts https traffic and gives the client a self-signed certificate for SSL Termination at the proxy.

However, for certain domains (medical websites, bank websites, etc.) I want to make an exception and let HAProxy forward it and not create his own certificate for that specific domain so it won’t be decrypted (privacy/legal reasons).

How can I achieve this?

1 post - 1 participant

Read full topic


Viewing all articles
Browse latest Browse all 4731

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>