deetungsten / webui-privaxy

GNU Affero General Public License v3.0
73 stars 3 forks source link

Unable to perform handshake for host: Consider excluding it from blocking. The service may not tolerate TLS interception. #8

Open 24fpsDaVinci opened 9 months ago

24fpsDaVinci commented 9 months ago
[2023-12-31T21:30:03Z WARN  privaxy::proxy::mitm] Unable to perform handshake for host: graph.facebook.com:443. Consider excluding it from blocking. The service may not tolerate TLS interception.
[2023-12-31T21:30:03Z WARN  privaxy::proxy::mitm] Unable to perform handshake for host: firebase-settings.crashlytics.com:443. Consider excluding it from blocking. The service may not tolerate TLS interception.
[2023-12-31T21:47:08Z WARN  privaxy::proxy::mitm] Unable to perform handshake for host: avpk-a2ehf10z0yhpek-0.api.amazonvideo.com:443. Consider excluding it from blocking. The service may not tolerate TLS interception.

i'm getting hundreds of these in the logs, client is appletv

joshrmcdaniel commented 7 months ago

I ran into a similar issue. I deploy this network wide, so I ended up configuring a PAC file and adding it to the DHCP server's settings, and adding sites to connect DIRECT instead of through the proxy, solving my issue. If you're using pfSense as a router, here's a good guide for setting that up: https://nguvu.org/pfsense/pfSense-2.3-WPAD-PAC-proxy-configuration-guide/