Conversation
Notices
-
@zenheathen it's such common practice in enterprises. Every webfiltering/utm vendor pushes a SSL interception solution. The browser vendors are complicit too. If you install a third party rootca they allow it to override certificate pinning.
-
Not just employers, either. I’ve seen browser-valid MITM appliances being marketed to operators of public #WiFi hotspots, such as #coffee shops and hotels.
-
I think some of Squid 3 development was funded specifically for ssl interception. Not a bad thing, but shows the demand.