|
|
|
|
|
by danw1979
125 days ago
|
|
Some commercial firewalls will snoop on the SNI header in TLS requests and send a RST towards the client if the hostname isn’t on a whitelist. Reasonably effective. If there’s a way with the macos sandboxing to intercept socket connections you might find some proxy software that already supports this. the HTTP_PROXY approach might be simpler though. |
|