For public wifi networks, where systems will not have our SSL Root CA installed, an option for an operator to only respond on port 80 would allow blocking w/o SSL errors (Instead it will say connection refused)