Re: Suppressing/modifying some browser fingerprints (ie. Am I Unique?)

Lee <[email protected]> Fri, 17 Jul 2020 19:20:15 -0400
Newsgroups gmane.comp.web.privoxy.user
Message-ID <CAD8GWsvJBaETTsDBQPZDbZqX-GXvg4VW40h7rh9ckXC=PG7Auw@mail.gmail.com>
On 7/17/20, Nicholas Bastin <[email protected]> wrote:
> On Fri, Jul 17, 2020 at 11:58 AM Lee <[email protected]> wrote:
>
>> Privoxy used to be amazing, and then most everything web switched to
>> https.  Which is much better than doing clear-text, but bad in that
>> privoxy can't do anything with encrypted traffic except pass it along.
>> So privoxy became pretty the emuch a glorified hosts file.  Until
>> recently..
>>
>
> You have always been able to put privoxy into a longer pipeline that had an
> SSL bump so that privoxy would always have cleartext headers available to
> it.  Personally I think this is a much better solution instead of trying to
> build everything into one binary - just assemble your network pipeline as
> required for your environment, with Privoxy being just a piece of that.

So it looks like the diagram under 'how it works' at
  http://www.proxfilter.net/proxhttpsproxy/
right?

I've done "bump in the wire" stuff before and never really liked it.

The big thing I like about doing everything in Privoxy is that I get
to check the cert in the browser.  Any site where I care about
security should show up as having a legit cert; the sites where I'm
doing https inspection show up with a cert from "Billy Bob's Beer,
Bait and CA Store".

Regards,
Lee