• achsonaja@lemm.ee
    ·
    1 year ago

    Yeah I think it has the same limitations that pretty much anything not through a vpn has because you still have to tell your isp where to send the data. Your isp will still see some things, even if it’s encrypted (metadata, DPI, habits, and things beyond my knowledge). This sounds like a step in the right direction for the majority of people though, even if it’s minor.

    I kind of see it like differentiating between them seeing lemmy.ml via this vs lemmy.ml/thing-i-want-private/peronal.html without it, but I could be wrong about that.

    • Bitrot@lemmy.sdf.org
      ·
      edit-2
      1 year ago

      HTTPS already prevents them from knowing exactly what content you’re looking at. Hiding SNI prevents them from knowing exactly what site you are connecting to via HTTPS.

      They can still figure that out if you’re using unencrypted DNS or if there is a 1:1 IP to rDNS mapping though.