• dracs@programming.dev
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    That’s not entirely true. It’s only very recently that browsers have started using a new system called Encrypted Client Hello which hides the domain of the request. Prior to this all requests needed too have the Host field unencrypted so the receiving server knows which certified to respond with. I imagine there’s still quite a few servers which don’t support the new setup still.

      • Tja@programming.dev
        link
        fedilink
        arrow-up
        0
        ·
        10 months ago

        I don’t know about that. Technically it wouldn’t be necessary but I can see providers limiting you to a single IP instead of a /64 and needing to do it anyway, because the tech exists anyway. Or for privacy reasons. There is IPv6 NAT, after all…