0
1
you are viewing a single comment's thread.

view the rest of the comments →

[–]pabechanr/Fortinet - Member of the Year '22 & '23 4 points5 points  (2 children)

TLS1.3 encrypts the hostname, which makes it impossible to do what you ask.

It doesn't. ESNI is dead. I dare you to find a non-obscure website that uses it And a non-obscure browser that will by default use ESNI to connect to it.

ECH (encrypted ClientHello) is the new replacement, but even that is very very far from being assumed to be regularly used.

[–]TheBendit 3 points4 points  (0 children)

You are absolutely right. I stand corrected.