3 ms·
That's not necessarily true. SSL/TLS does not prevent all MITM, it prevents unwanted MITM. To be fair, I don't think you can install certificates on a Chromeca
by Chabsff 5y ago
That's not necessarily true. SSL/TLS does not prevent all MITM, it prevents unwanted MITM.
To be fair, I don't think you can install certificates on a Chromecast for example, so it might not be practically feasible for all devices, but a blanket "SSL makes that impossible" is not correct.
- qwertyuiop_ 5y agoSSL/TLS does not prevent all MITM, it prevents unwanted MITM. That’s news to me. Can you expand on this ? I always assumed if an API Endpoint for example is served on TLS it’s secure till the termination. No ?
- nicoburns 5y agoYou can always choose to install your own root certificates, at which point your browsers will trust any certificates issued by them (which could be your own mitm proxy)
- derimagia 5y agoIn practice it's usually done with SSL termination (MITM but you have a trusted certificate) Adguard Docs on it: https://kb.adguard.com/en/general/https-filtering#how-does-https-filtering-work https://kb.adguard.com/en/general/https-filtering#how-does-h... Charles Proxy: https://www.charlesproxy.com/documentation/proxying/ssl-proxying/ https://www.charlesproxy.com/documentation/proxying/ssl-prox...