Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
WireWrap
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
WireWrap
11y ago
I appreciate you mentioning the Session ID and Session Ticket scenarios. Those can be disabled though, correct? HTTP/2 over cleartext TCP is also possible? Maybe still some increase in correlation risk due to those? Do you think the
32.
▲
by
WireWrap
11y ago
Well, this: Clients SHOULD NOT open more than one HTTP/2 connection to a given host and port pair, where the host is derived from a URI, a selected alternative service [ALT-SVC], or a configured proxy. suggests to me that if you have
33.
▲
by
WireWrap
11y ago
I've only begun to study the protocol, but some things in the privacy section do concern me. Particularly: HTTP/2's preference for using a single TCP connection allows correlation of a user's activity on a site. Reusing
34.
▲
by
WireWrap
12y ago
They were recently moved to the SiteSecurityServiceState.txt file: https://bugzilla.mozilla.org/show_bug.cgi?id=775370