Ask HN: Gather proof of MITM on college wifi
The campus website downplays the change as if it's related to piracy and stuff, but staff told me it had to do with FBI compliance and subpoenas. I guess the college has enough people using network to be considered an ISP by the gov. And the cert is supposedly only for authorizing students to the network so we don't need to enter passwords anymore. But if it's only for network auth, why does it break cert pinning? Or is that just a consequence of network auth, where everything breaks? That seems unlikely, but I'm fairly clueless here. Anyway, what the heck should I do? I'm somewhat familiar with Wireshark and the Charles proxy but haven't grasped using Fiddler very well. Thanks for any tips.