Hacker News
new
past
comments
ask
show
jobs
points
by
szmarczak
13 hours ago
|
comments
by
hzwanip
13 hours ago
|
[-]
How would you (an arbitrary web server) fingerprint a TLS connection if the Client Hello is encrypted?
reply
by
conradludgate
13 hours ago
|
parent
|
next
[-]
The website owner (or cloudflare in this case) has the keys to decrypt the client hello. That's necessary for routing information.
reply
by
hzwanip
13 hours ago
|
parent
|
[-]
You're right, sorry! I got confused myself.
reply
by
szmarczak
13 hours ago
|
parent
|
prev
|
[-]
By decrypting it? I don't think you know how TLS, or E2E works in general. ISP doesn't perform the fingerprinting, the server does.
reply
by
hzwanip
13 hours ago
|
parent
|
[-]
Of course! My bad, thanks for engaging.
reply