Re: large campus network ... sugestions

2007-12-15 Thread Jonas Andradas
Hello Roman, Thanks for the clarification. Indeed, if an SSL tunnel is made through port 443, then anything could go in there, and it would be impossible to inspect. I don''t know of any Open Source or Free software that can solve this. Bluecoat does have this kind of product in appliances, whi

Re: large campus network ... sugestions

2007-12-15 Thread Roman Medina-Heigl Hernandez
How does Bluecoat deal with the fact that HTTPS connections are secured point-to-point? If Bluecoat (or whatever) does some kind of MITM, client browser would detect it and HTTPS would be broken. I still don't get the point... Cheers, -Roman Jonas Andradas escribió: > Hello Roman, > > Thanks for

Re: large campus network ... sugestions

2007-12-15 Thread Jonas Andradas
Hello, Sorry I did not explain fully. Yes, Bluecoat does a MITM. It sees where you want to go (say, an HTTPS page), and establishes an SSL session with it. It, then, generates an SSL certificate signed by "him" saying "he" is the URL your are trying to visit. All traffic between you and the Bl

Re: large campus network ... sugestions

2007-12-15 Thread Martijn Brinkers
On Sat, 2007-12-15 at 16:23 +0100, Roman Medina-Heigl Hernandez wrote: > How does Bluecoat deal with the fact that HTTPS connections are secured > point-to-point? If Bluecoat (or whatever) does some kind of MITM, client > browser would detect it and HTTPS would be broken. I still don't get the > p