Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Using Curiefense for HTTPS traffic over Envoy #1256

Open
BenAgai opened this issue Oct 21, 2023 · 0 comments
Open

Using Curiefense for HTTPS traffic over Envoy #1256

BenAgai opened this issue Oct 21, 2023 · 0 comments
Labels
bug Something isn't working

Comments

@BenAgai
Copy link

BenAgai commented Oct 21, 2023

Hi,
I have a question regarding Curiefense support handling TLS traffic over Envoy.
I didn't know if this question should be opened here or not, so I apologize if it is needed to be opened somewhere else.

Curiefense handles HTTP messages provided by the underlying Envoy proxy.
In order for Curiefense to handle HTTPS messages, it needs the Envoy proxy to perform TLS inspection.

Curiefense

As far as I'm familiar with Envoy, it does not support TLS bumping out of the box in order to
perform TLS inspection (at least not for the first TLS connection made to a domain).
With that being said, is it possible to use Curiefense over Envoy for HTTPS traffic?

Please correct me if I'm wrong, or if I missed anything regarding Curiefense workflow.

Thanks,
Ben Agai.

@BenAgai BenAgai added the bug Something isn't working label Oct 21, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

1 participant