How does your company deal with malware?
Lonnie Olson
lists at kittypee.com
Thu Aug 26 10:29:08 MDT 2010
On Thu, Aug 26, 2010 at 10:04 AM, Dave Smith <dave at thesmithfam.org> wrote:
> Agreed. They cannot filter SSL traffic, right? One advantage (if you can
> call it that) of an explicit proxy is that it can do SSL filtering (albeit
> in a broken, obnoxious way).
True, but many of the stock appliances (sonicwall, fortinet, etc)
filter SSL traffic by IP. Not perfect, but closer.
And filtering SSL using a Proxy is akin to MITM attacks. Very dangerous IMHO.
More information about the PLUG
mailing list