<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic scan download files over HTTPS using Anti-Virus Proxy in Operating System - Linux</title>
    <link>https://community.hpe.com/t5/operating-system-linux/scan-download-files-over-https-using-anti-virus-proxy/m-p/4196368#M83539</link>
    <description>hi&lt;BR /&gt;&lt;BR /&gt;I've setuped Anti-Virus Proxy:&lt;BR /&gt;&lt;BR /&gt;HAVP+CLAMAV+SQUID &lt;BR /&gt;&lt;BR /&gt;only for personal use on my debian etch stable.&lt;BR /&gt;&lt;BR /&gt;with HTTP it seems to work, but the file download over HTTPS, &lt;BR /&gt;for example from:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://secure.eicar.org/eicar_com.zip" target="_blank"&gt;https://secure.eicar.org/eicar_com.zip&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;will be not scanned.&lt;BR /&gt;&lt;BR /&gt;howto setup squid to decipher, I mean SSL between a remote server and proxy &lt;BR /&gt;or allow scan download files over ssl ?</description>
    <pubDate>Mon, 12 May 2008 23:47:41 GMT</pubDate>
    <dc:creator>'chris'</dc:creator>
    <dc:date>2008-05-12T23:47:41Z</dc:date>
    <item>
      <title>scan download files over HTTPS using Anti-Virus Proxy</title>
      <link>https://community.hpe.com/t5/operating-system-linux/scan-download-files-over-https-using-anti-virus-proxy/m-p/4196368#M83539</link>
      <description>hi&lt;BR /&gt;&lt;BR /&gt;I've setuped Anti-Virus Proxy:&lt;BR /&gt;&lt;BR /&gt;HAVP+CLAMAV+SQUID &lt;BR /&gt;&lt;BR /&gt;only for personal use on my debian etch stable.&lt;BR /&gt;&lt;BR /&gt;with HTTP it seems to work, but the file download over HTTPS, &lt;BR /&gt;for example from:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://secure.eicar.org/eicar_com.zip" target="_blank"&gt;https://secure.eicar.org/eicar_com.zip&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;will be not scanned.&lt;BR /&gt;&lt;BR /&gt;howto setup squid to decipher, I mean SSL between a remote server and proxy &lt;BR /&gt;or allow scan download files over ssl ?</description>
      <pubDate>Mon, 12 May 2008 23:47:41 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/scan-download-files-over-https-using-anti-virus-proxy/m-p/4196368#M83539</guid>
      <dc:creator>'chris'</dc:creator>
      <dc:date>2008-05-12T23:47:41Z</dc:date>
    </item>
    <item>
      <title>Re: scan download files over HTTPS using Anti-Virus Proxy</title>
      <link>https://community.hpe.com/t5/operating-system-linux/scan-download-files-over-https-using-anti-virus-proxy/m-p/4196369#M83540</link>
      <description>The common answer for this is that squid and havp don't support&lt;BR /&gt;inspection of https/SSL.  The entire reason for SSL is to prevent&lt;BR /&gt;man-in-the-middle decoding.  However, there are some proxies such as&lt;BR /&gt;&lt;A href="http://www.delegate.org/delegate/" target="_blank"&gt;http://www.delegate.org/delegate/&lt;/A&gt; and &lt;A href="http://crypto.stanford.edu/ssl-mitm" target="_blank"&gt;http://crypto.stanford.edu/ssl-mitm&lt;/A&gt;&lt;BR /&gt;that will try to enable SSL inspection by posing as the client for the&lt;BR /&gt;https server and posing as the host for the https client.  They depend&lt;BR /&gt;on having a browser configured with the proxy as a certificate authority&lt;BR /&gt;so it can create a phony server certificate to present to the client browser.&lt;BR /&gt;&lt;BR /&gt;I actually see a claim at &lt;A href="http://www.securenetassociates.com/network_composer.htm" target="_blank"&gt;http://www.securenetassociates.com/network_composer.htm&lt;/A&gt;&lt;BR /&gt;that they have a SSL filter that can act as a man-in-the-middle without any&lt;BR /&gt;configuration of the client browsers.  That is alarming and unlikely.&lt;BR /&gt;</description>
      <pubDate>Thu, 15 May 2008 22:34:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/scan-download-files-over-https-using-anti-virus-proxy/m-p/4196369#M83540</guid>
      <dc:creator>Mike Stroyan</dc:creator>
      <dc:date>2008-05-15T22:34:06Z</dc:date>
    </item>
  </channel>
</rss>

