Re: New TLS proposal for SNI => ESNI

2018-09-25 Thread Aleksandar Lazic
Hi Manu.

Am 25.09.2018 um 11:02 schrieb Emmanuel Hocdet:
> 
> Hi Aleks,
> 
>> Le 25 sept. 2018 à 08:05, Aleksandar Lazic > > a écrit :
>>
>> Hi.
>>
>> Have anyone seen this?
>>
>> https://www.eff.org/deeplinks/2018/09/esni-privacy-protecting-upgrade-https
>>
>> It looks very interesting for higher privacy.
>>
> 
> Yep.
> Also 
> https://datatracker.ietf.org/meeting/102/materials/slides-102-tls-encrypted-sni-01
> I looked in boringssl, only cloudflare version seem to have it (source not 
> public).
> 
> This will be problematic to extract the eSNI in L6, even with the private key.

Thanks you.

> ++
> Manu

Regards
Aleks



Re: New TLS proposal for SNI => ESNI

2018-09-25 Thread Emmanuel Hocdet

Hi Aleks,

> Le 25 sept. 2018 à 08:05, Aleksandar Lazic  a écrit :
> 
> Hi.
> 
> Have anyone seen this?
> 
> https://www.eff.org/deeplinks/2018/09/esni-privacy-protecting-upgrade-https
> 
> It looks very interesting for higher privacy.
> 

Yep.
Also 
https://datatracker.ietf.org/meeting/102/materials/slides-102-tls-encrypted-sni-01
 

I looked in boringssl, only cloudflare version seem to have it (source not 
public).

This will be problematic to extract the eSNI in L6, even with the private key.

++
Manu



New TLS proposal for SNI => ESNI

2018-09-25 Thread Aleksandar Lazic
Hi.

Have anyone seen this?

https://www.eff.org/deeplinks/2018/09/esni-privacy-protecting-upgrade-https

It looks very interesting for higher privacy.

Regards
Aleks