Re: transparent https interception

From: Adrian Chadd <adrian@dont-contact.us>
Date: Tue, 19 Jun 2007 23:25:13 +0800

On Tue, Jun 19, 2007, Henrik Nordstrom wrote:
> tis 2007-06-19 klockan 17:37 +0800 skrev Adrian Chadd:
> > Gah, I got another email about transparent https interception.
>
> Heh..
>
> > I guess this means I'll just have to bloody write it. My main question
> > is which ACL types people would like to support. Initially it'd be
> > easy to support source and destination IP, logging the transaction
> > time and TX/RX bytes.
>
> Yes.
>
> And maybe also some way to verify that there really is an SSL
> handshake.. (also relevant to CONNECT).

If I do this I could also implement the tunneling from Steven Wilton
for "transparent" tunneling of unparseable HTTP requests; with similar
ACLing.

What do you think?

Adrian
Received on Tue Jun 19 2007 - 09:24:05 MDT

This archive was generated by hypermail pre-2.1.9 : Sun Jul 01 2007 - 12:00:07 MDT