Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

DoH (edit from DoT) doesn't use cookies, it is stateless. But your original comment didn't mention that anyway, it only mentioned SNI.


From "The Big DNS Privacy Debate" [1]:

DoH shares the benefits and downsides of HTTPS. It sends out more trackable data than regular DNS, simply because HTTP supports things like headers and cookies. TLS session resumption functions as another tracking mechanism.

There’s a draft RFC [2] to address these and other privacy issues that weren't specified in the original RFC for DoH.

[1]: https://labs.ripe.net/Members/bert_hubert/the-big-dns-privac...

[2]: https://www.ietf.org/archive/id/draft-dickinson-doh-dohpe-00...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: