Hacker News new | past | comments | ask | show | jobs | submit login

ECH is going to be huge for people in regressive countries. For example Iran.



Nah, they're just going to block the whole ECH handshake.

Idk about Iran, but Russia and China just block eSNI, QUIC and whatever their DPI firewalls can't really handle on the fly.


The idea is to make ECH too large of a target to make blocking it practical. If you block ECH you end up blocking access to a large portion of the internet in that region. It's why some major browsers have chosen to not gracefully fallback to non-ECH handshakes upon connection failure.


Greetings, residents of Arstotzka! To access Arstotzkan government websites, please install this Ministry of Digits TLS root certificate on all your devices. Also, all new phones sold in Arstotzka must have the certificate preinstalled, starting from 2025.



I think the other poster was implying that the governments don’t care.


Disagree on this take. Blocking services does have an economic impact.

This alongside people smuggling in starlink is making censorship useless.


Freedom of information is an existential threat to authoritarian states. There is no amount of money they're not willing to give up if it mean they stay in power.

That's said, it will not come to that. They'll just mandate spyware installation.


China blocks services all the time. I was one of the original 10 blocked by the great firewall of china.

And starlink can be traced. It’s only time before some people start getting arrested.


I’m not talking about China. China has well made internal alternatives to most western services.

Iran does not.


Yeah we shall see - we're monitoring closely


Many such countries already block traffic with ECH entirely. There's no technical solutions to a polical problem.

I remember when you can just change your DNS provider to bypass censorship. Nowadays, browsers and OS provide safe DNS by default, and thus censors had mostly switched to DPI based method. As this cat and mouse game continue, inevitably these governments will mandate spyware on every machine.

These privacy enhancements invented by westerner only work for western citizens threat model.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: