Is there a practicable way to amend TLS so it doesn’t leak domain names to a passive listener?
-
-
The DNS lookup happens (leaks data) before TLS connection initialization
-
yes, but I’m talking strictly about TLS, because with DNS you can mitigate by caching or tunneling the lookups
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.