|
|
|
Installing a root ca is a huge deal for many reasons. This debat is not so much monitoring as it is the massive security hole introduced into devices.
Not sure if this is still a thing, but a while ago I was reading in to systems that had the ability to strip SSL and provide all internal traffic as HTTP, this would effectively achieve the same result, but without the added "Superfish-like" threat.
|
|
|