3 ms·
Corporate environments where "endpoint solutions" snoop through all traffic to detect malware activity. While I understand the use case, I would not support it.
by marios 8y ago
Corporate environments where "endpoint solutions" snoop through all traffic to detect malware activity.
While I understand the use case, I would not support it. What I find unacceptable is, assuming the article is correct, that ETSI is asking NIST to recommend their crippled TLS in their new guidelines rather than TLS1.3.
Disabling PFS and thus enabling the decryption of all TLS sessions should be a conscious decision rather than something that was there 'by default' (and could easily be abused).