On 13.12.2017 01:52, Yuri wrote:
> On 12/10/17 12:45, Eugene Grosbein wrote:
>> No, they don't. You get into MITM and then you have a choice: ignore and run 
>> your connection anyway
>> or have no connectivity at all (using this channel). Both are bad, so don't 
>> use such a channel from the beginning.
> 
> 
> No, MITM of https with the private CA isn't possible. Please provide 
> references if you believe that the opposite is true.

https://wiki.squid-cache.org/Features/SslPeekAndSplice

You either ignore MITM and proceed with connection anyway or have no 
connectivity via this channel at all.

_______________________________________________
[email protected] mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "[email protected]"

Reply via email to