2 ms·
The industry stance seems to be: SNI not yet being fixed should not be an excuse to preclude work on securing the privacy of DNS requests. SNI Encryption is bei
by LogicX 9y ago
The industry stance seems to be: SNI not yet being fixed should not be an excuse to preclude work on securing the privacy of DNS requests.
SNI Encryption is being discussed: https://www.ietf.org/proceedings/94/slides/slides-94-tls-8.pdf https://www.ietf.org/proceedings/94/slides/slides-94-tls-8.p...
We at DNSFilter are working on client to resolver agents which use DNS over TLS as well as DNSCrypt.
We're also looking to create a standard for recursive resolvers like us to communicate securely with authoritative providers (no RFC yet).