In light of the recent light being shed on the Superfish vulnerability and the use of Komodia for intercepting ssl certifficates to analyze ssl traffic I have a question.
How is BitDefender implementing the Net Defender interception and generation (issuing) of ssl certificates for the sites visited via ssl?
How can it be turned off and the certificate removed?
Is the private key that is used to generate the certificates residing on my local machine?
Is the private key unique to each machine or is it the same key across all machines?
On a side note, how does NetDefender handle the verification of revoked certificates?
How do I know that NetDefender is adequately verifying the validity of a certificate it receives?