3 ms·
No, you missed my point. Read the article I linked. With a proper HTTP/HTTPS proxy + CONNECT handshake, you still have the full end-to-end integrity of the conn
by igrigorik 14y ago
No, you missed my point. Read the article I linked. With a proper HTTP/HTTPS proxy + CONNECT handshake, you still have the full end-to-end integrity of the connection. The proxy acts as a simple TCP relay.
- RyanZAG 14y agoA simple TCP relay that can log any and all traffic passing through it at any time with no prior warning. eg. an employee with sufficient access to the server (CTO? newly hired intern? who knows) can turn on logging of your traffic and read your private communication. This includes full access to any source code you may upload to github or any transactions you may make on your bank's website. The employee may delete the logs after he is done, and nobody would ever know that he has accessed them. Government agencies may legally prevent anybody speaking of their wiretapping through numerous laws. Basically, the fact that it acts as a simple TCP relay (obviously it does not, it is parsing the data) is seriously in doubt.
- VMG 14y agoThe point of SSL is that a TCP relay doesn't impact the security. Same is true for for a proxy and HTTP CONNECT. (The question remains if the Nokia browser does HTTP CONNECT)
- adrianmsmith 14y agoBut this isn't what Opera Mini does or wants to do. It wants to compress and otherwise alter the data flowing through it, so that you get a faster experience when browsing on the mobile. To do this it needs to see the HTML, JS etc going through it. A TCP relay wouldn't be able to do that.