V2EX = way to explore
V2EX 是一个关于分享和探索的地方
Sign Up Now
For Existing Member  Sign In
czwstc
5.59D
V2EX  ›  SSL

[TLS] Exposing and Circumventing China's Censorship of ESNI

  •  1
     
  •   czwstc · Aug 8, 2020 · 1440 views
    This topic created in 2091 days ago, the information mentioned may be changed or developed.

    We confirm that the Great Firewall (GFW) of China has recently begun blocking ESNI—one of the foundational features of TLS 1.3 and HTTPS. We empirically demonstrate what triggers this censorship and how long residual censorship lasts. We also present several evasion strategies discovered by Geneva that can be run either client-side or server-side to evade blocking.

    源文见:链接链接

    3 replies    2020-08-22 14:17:04 +08:00
    Tink
        1
    Tink  
    PRO
       Aug 8, 2020 via Android
    gfw 的技术功底真的
    feather12315
        2
    feather12315  
       Aug 9, 2020 via Android
    没事,中国的数据很安全
    lqf96
        3
    lqf96  
       Aug 22, 2020   ❤️ 1
    我记得根据现行的 IETF ECH 草案,哪怕服务器端不支持 ECH,客户端也可能会发送一个假的 GREASE extension...那墙要怎么处理,无条件屏蔽所有出国连接么...
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   2370 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 31ms · UTC 11:28 · PVG 19:28 · LAX 04:28 · JFK 07:28
    ♥ Do have faith in what you're doing.