A paper presents a method to mask the server host identity by encrypting the SNI . The method adheres to almost all SSL/TLS related Internet standards requirements . The new method enjoys all securitybenefits of existing secure channel establishment and needs no modification inexisting routers/middle-boxes. The method is based on the use of the HTTPS protocol to establish a secure channel without sharing SNI information, and the second handshakeshares the encrypted SNI. The SNI field contains information about the host and can, in turn, reveal the type oftraffic.

Author(s) : Vinod S. Khandkar, Manjesh K. Hanawal

Links : PDF - Abstract

Code :

Keywords : server - method - client - sni - host -

