Google blocked domain fronting after activists made them more aware of it. AWS told Signal to stop domain fronting after they explained how they’re circumventing censorship with it on HN. Seems like people should stop telling hosts about domain fronting
To be more specific, my point is that (1) having activists push the message and (2) showing off your censorship evasion on HN both force the respective companies into having to address the topic
-
-
Sure, “domain fronting” as it has been named, is a bug in any HTTPS load-balancing/cdn infrastructure, and more aware means more attention. It’s just in this case I think it’s hundreds or thousands of clients screeching that got the response, not the post on HN.
-
And among those clients, many probably pointed to the post and said “this is why Russia bans you”. And so the article explains it away, rather than having to say they caved to their customer’s needs/demands.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.