Hacker News new | past | comments | ask | show | jobs | submit login

... and this is exactly what will happen to cloudflare-ech.com.

I'm really disappointed with how the ECH spec panned out. It's almost like "make sure middleboxes and GFW can block this" was a hard requirement. They should've made the handshake look like a session resumption (i.e. pre-shared key), since those aren't required to send a server name.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
