Skip to content

Verify TLS on proxy connections - #35

Merged
aezell merged 1 commit into
mainfrom
verify-proxy-tls
Sep 9, 2026
Merged

aezell merged 1 commit into
mainfrom
verify-proxy-tls

Conversation

@mjbraun

@mjbraun mjbraun commented Sep 9, 2026

Copy link
Copy Markdown
Contributor

The port-forwarding proxy opened its WebSocket to the API with verify_none, so the bearer token it sends could be captured by anyone able to intercept the connection. Command and control connections already verified the server certificate; move that configuration into Sprites.Transport and use it for all three.

The port-forwarding proxy opened its WebSocket to the API with
verify_none, so the bearer token it sends could be captured by anyone
able to intercept the connection. Command and control connections
already verified the server certificate; move that configuration into
Sprites.Transport and use it for all three.
@mjbraun
mjbraun requested a review from aezell September 9, 2026 17:18
@aezell
aezell merged commit 9d788ff into main Sep 9, 2026
4 checks passed
@mjbraun
mjbraun deleted the verify-proxy-tls branch September 9, 2026 17:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants