<html>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<br>
-----BEGIN PGP SIGNED MESSAGE----- <br>
Hash: SHA256 <br>
<br>
Aha. And future of caching software too. With total HTTPS migration.<br>
<br>
01.09.15 2:21, Jason Haar пишет:<br>
<span style="white-space: pre;">> On 01/09/15 02:59, Shane King
wrote:<br>
>> Accessing via the browser may work but the sync clients
that sit in<br>
>> the system tray use certificate pinning I believe. So if
certificate<br>
>> pinning is being used, ssl bumping will not work. You
will see an<br>
>> alert message in the pcap followed by a connection
termination.<br>
><br>
> This stopped working for me last week - I suspect there was
an update or<br>
> something<br>
><br>
> Really frustrating: one of the primary reasons I want to do
TLS<br>
> intercept is to AV all the viruses published on dropbox!!!<br>
><br>
> If the Cloud providers go full pinning, the future of TLS
Intercept is bleak<br>
><br>
><br>
><br>
><br>
> _______________________________________________<br>
> squid-users mailing list<br>
> <a class="moz-txt-link-abbreviated" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br>
> <a class="moz-txt-link-freetext" href="http://lists.squid-cache.org/listinfo/squid-users">http://lists.squid-cache.org/listinfo/squid-users</a></span><br>
<br>
-----BEGIN PGP SIGNATURE-----
<br>
Version: GnuPG v2
<br>
<br>
iQEcBAEBCAAGBQJV5LgKAAoJENNXIZxhPexGixMIAKbDAOmalxc2fF5tN/hJfodl
<br>
hsm3rrRTIZNIMqk2q91zAEMjgiD2GVebyfYDrrkYwsqe1s+062YUHVB483KnAWcS
<br>
3W4guzGzDc1t3E5xrzmryFyVyLtAp8FFMZfoZqckN/OQxk23MbY9LQHSennO9Aw/
<br>
xeuZtXizYaK33um1TB96O4YKaWr2e2NG1jPnaeHGmO/SUu01lnzXbgRwvTWfHbl6
<br>
3A04aNbCpFUlpeS+mI62sfKfX0r7bO8DqKZPIywU2xmwbBim3lzpxzv0UD+qeLAw
<br>
JFmREBkos4iQuggGbJsCtVHYp8oo/jJTM7ylL6IN+bSgoHozUVbJ4ne3Kl5v75Q=
<br>
=Wded
<br>
-----END PGP SIGNATURE-----
<br>
<br>
</body>
</html>