On 13.12.2017 01:52, Yuri wrote: > On 12/10/17 12:45, Eugene Grosbein wrote: >> No, they don't. You get into MITM and then you have a choice: ignore and run >> your connection anyway >> or have no connectivity at all (using this channel). Both are bad, so don't >> use such a channel from the beginning. > > > No, MITM of https with the private CA isn't possible. Please provide > references if you believe that the opposite is true.
https://wiki.squid-cache.org/Features/SslPeekAndSplice You either ignore MITM and proceed with connection anyway or have no connectivity via this channel at all. _______________________________________________ [email protected] mailing list https://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "[email protected]"
