4 ms·
Is that directive the reason why website operators do not want to implement ECH (Encrypted Client Hello) which allows to encrypt server name in TLS connection?
by codedokode 2y ago
Is that directive the reason why website operators do not want to implement ECH (Encrypted Client Hello) which allows to encrypt server name in TLS connection? I tried googling this, but Cloudflare blog only says that they disabled ECH without disclosing the reasons: [1]
[1] https://community.cloudflare.com/t/early-hints-and-encrypted-client-hello-ech-are-currently-disabled-globally/567730 https://community.cloudflare.com/t/early-hints-and-encrypted...
- stavros 2y agoThey never re-enabled it?
- codedokode 2y agoNo, and other sites seem to not support it. This is a list of top 10 000 sites and it seems that virtually nobody supports this TLS extension: https://divested.dev/misc/ech.txt https://divested.dev/misc/ech.txt .
- stavros 2y agoThat's a real shame, I wonder if the decision to not enable it really is coming "from above".