We want to support 2 whitelist types:
- passthrough - does not decrypt HTTPS
- inspected - decrypts HTTPS. Requires trusting MITM CA.
By default, we should deny all other traffic
Additionally, MITM supports TCP proxying, so we should be able to create rules for non-HTTP traffic, like LDAP or SMTP.
Definition of done
We want to support 2 whitelist types:
By default, we should deny all other traffic
Additionally, MITM supports TCP proxying, so we should be able to create rules for non-HTTP traffic, like LDAP or SMTP.
Definition of done