Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How would you (an arbitrary web server) fingerprint a TLS connection if the Client Hello is encrypted?


The website owner (or cloudflare in this case) has the keys to decrypt the client hello. That's necessary for routing information.


You're right, sorry! I got confused myself.


By decrypting it? I don't think you know how TLS, or E2E works in general. ISP doesn't perform the fingerprinting, the server does.


Of course! My bad, thanks for engaging.




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: