Re: SSL in asynchronous proxy

2007-08-21 Thread Eddy Nigg (StartCom Ltd.)
timeless wrote: > Nelson: please trust us. the product has specific design constraints. > This is a public mailing list. Archived and published by Google Groups. Perhaps a different channel of communication would be better... > the purpose is to allow for mozilla to sit between e.g. MSIE or > A

Re: SSL in asynchronous proxy

2007-08-21 Thread umesh
> Unfortunately umesh didn't explain exactly which path was taken. And > umesh didn't indicate if he used the NSS debug env vars to get extra > logging. Nor did umesh indicate if he had tried using ssltap in > conjunction with this, or using a mozilla as the client with it > configured w/ the NSS d

Re: SSL in asynchronous proxy

2007-08-21 Thread timeless
I wish umesh would reply in thread instead of randomly posting new threads. *grumble* On Aug 19, 5:04 am, Nelson B <[EMAIL PROTECTED]> wrote: > How do you plan to defeat the MITM detection in the products you intend > to attack? Do you plan to plant a bogus root CA cert in them? > If so, how do y

Re: SSL in asynchronous proxy

2007-08-21 Thread timeless
Nelson: please trust us. the product has specific design constraints. the purpose is to allow for mozilla to sit between e.g. MSIE or Acrobat Reader and a web server, analyze the stream and then do something based on it. The only way that this works is for MSIE or whatever to *install* a certific