Local proxy for SSL service

view story

http://serverfault.com – I am trying to set up a local proxy for an SSL-based (HTTPS) service. The proxy will need access to the clear-text of the content going in both directions (for compliance reasons). I have control over the server certificate, as well as complete control over the proxy and its certificate. I understand that this is effectively a man-in-the-middle attack and therefore exactly what SSL is supoosed to prevent, but I'm wondering if this sort of setup is possible to do with some certificate magic and local DNS redirection. If possible, I would like to configure the SSL certificates such that wh (HowTos)