INSTALLING BURP CA CERTIFICATE
Why do I need to install Burp's CA certificate?
One of the key functions of TLS is to accredit the character of web servers that your browser communicates with. This affidavit action helps to anticipate a counterfeit website from masquerading as a accepted one, for example. It additionally encrypts the transmitted abstracts and accouterments candor checks to assure adjoin man-in-the-middle attacks. In adjustment to ambush the cartage amid your browser and destination web server, Burp needs to breach this TLS connection. As a result, if you try and admission an HTTPS URL while Burp is running, your browser will ascertain that it is not communicating anon with the accurate web server and will appearance a aegis warning.
To anticipate this issue, Burp generates its own TLS affidavit for anniversary host, active by its own Affidavit Authority (CA). This CA affidavit is generated the aboriginal time you barrage Burp, and stored locally. To use Burp Proxy best finer with HTTPS websites, you charge to install this affidavit as a trusted basis in your browser's assurance store. Burp will again use this CA affidavit to actualize and assurance a TLS affidavit for anniversary host that you visit, acceptance you to browse HTTPS URLs as normal. You can again use Burp to appearance and adapt requests and responses beatific over HTTPS, aloof as you would with any added HTTP messages.
Although this footfall isn't carefully mandatory, abnormally if you alone appetite to assignment with non-HTTPS URLs, we still acclaim commutual this step. You alone charge to do it once, and it is appropriate to get the best out of your acquaintance with Burp Suite back application an alien browser.
Post a Comment