HNHacker News
TopNewBestAskShowJobs

Asseon

10 karma · joined November 19, 2014

submissionscomments
Asseon··on Tracking Users Across the Web via TLS Session Resumption
you are right, bad case of a Layer 8 issue.
Asseon··on Tracking Users Across the Web via TLS Session Resumption
That does not seem to work according to ssllabs browser test.
Asseon··on Tracking Users Across the Web via TLS Session Resumption
I was unable to find one. Right now the only way seems to be to patch nss.
Asseon··on OpenSSL 1.1.1 Is Released
If your nginx version is 1.13 or newer than yes, that should be enough.

[0] http://nginx.org/en/docs/http/ngx_http_ssl_module.html#ssl_p...

Asseon··on Getting Started with DNS over HTTPS on Firefox
Right now there are no benefits though. Because the browser sends the domainname you contact unencrypted via the TLS handshake due to SNI. So someone listing in to your communication will learn the hostname anyway.

I know people are working on encrypted SNI but that will take time.

Asseon··on Finland to propose that EU abolish daylight savings time
Russia tried that for 3 years, now they use normal time the hole year. It seems only "summer time" is not a good idea either.
Asseon··on [dead]
Seems to be down here too (germany), at least the desktop client. The web client still works.
Asseon··on If David Cameron bans secure encryption he can't intercept
Yes but A5/1 is utterly brocken. Besides thanks to numerous attacks possible through SS7 you probably do not even need to break the encryption.