Thanks for answers.
I have tried to reproduce connection today with simpler tools and instead of Chromium I have used echo and nc. Frankly I must admit that relayd fails to connect, so it is good.
My rules just don't intercept connections on lo0 interface and don't tried to intercept on ports other than 443. First was cause of false positive using local openssl-base server, second using ssllabs web page.
It turns out that it was my fault.
Sorry.
|