I've heard the argument, network admins argue it's a source of visibility into what their users are doing, and this is "going dark". If they have admin on the endpoints they can disable it - but I think it shouldn't be the default, because of the Starbucks Wifi scenario.
They could do terrible things with or without DoH, right? I don't understand the connection. I get the "going dark" argument, but the other arguments seem weak.
-
-
This Tweet is unavailable.
-
Hmm, if I understand your argument correctly, DoH is bad because ISPs or network administrators will do TLS interception more often to avoid going dark, and TLS interception is bad. But I don't see how it follows, if you can do TLS interception you can also disable DoH?
- 6 more replies
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.