@johnpoz
getting a squid transparent proxy running on pfsense with ssl/mitm from scratch wasn't easy tbqh (but maybe that's another topic...)
it is quite satisfying though to see the RT access logs flow in pfsense, and the secure lock in the browser at the same time (=
[image: 1747930627954-squiddie.jpg]
but still, as you mentioned before, without the device accepting my ""internal-ca"", it's besides the point