Re: Suppressing/modifying some browser fingerprints (ie. Am I Unique?)
Lee <[email protected]> Fri, 17 Jul 2020 19:20:15 -0400
| Newsgroups | gmane.comp.web.privoxy.user |
|---|---|
| Message-ID | <CAD8GWsvJBaETTsDBQPZDbZqX-GXvg4VW40h7rh9ckXC=PG7Auw@mail.gmail.com> |
On 7/17/20, Nicholas Bastin <[email protected]> wrote: > On Fri, Jul 17, 2020 at 11:58 AM Lee <[email protected]> wrote: > >> Privoxy used to be amazing, and then most everything web switched to >> https. Which is much better than doing clear-text, but bad in that >> privoxy can't do anything with encrypted traffic except pass it along. >> So privoxy became pretty the emuch a glorified hosts file. Until >> recently.. >> > > You have always been able to put privoxy into a longer pipeline that had an > SSL bump so that privoxy would always have cleartext headers available to > it. Personally I think this is a much better solution instead of trying to > build everything into one binary - just assemble your network pipeline as > required for your environment, with Privoxy being just a piece of that. So it looks like the diagram under 'how it works' at http://www.proxfilter.net/proxhttpsproxy/ right? I've done "bump in the wire" stuff before and never really liked it. The big thing I like about doing everything in Privoxy is that I get to check the cert in the browser. Any site where I care about security should show up as having a legit cert; the sites where I'm doing https inspection show up with a cert from "Billy Bob's Beer, Bait and CA Store". Regards, Lee