7 ms·
Stick all your IoT stuff in a private VLAN and use a MITM proxy to decrypt / recrypt everything. I have yet to find a consumer device of any sort that lets you
by exelius 7y ago
Stick all your IoT stuff in a private VLAN and use a MITM proxy to decrypt / recrypt everything. I have yet to find a consumer device of any sort that lets you easily swap out SSL certs. Even the devices where it’s possible to set up LetsEncrypt will usually get overwritten by firmware updates.
- mLuby 7y agoRight, but how do you decrypt the vendor's encryption? That's why I think you'd need to be able to provide a second key, because if vendors give out their decrypt key they may as well send it all in plaintext.