[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
This DNS over HTTP thing
- Subject: This DNS over HTTP thing
- From: mpalmer at hezmatt.org (Matt Palmer)
- Date: Wed, 2 Oct 2019 20:39:22 +1000
- In-reply-to: <33451.1570009557@turing-police>
- References: <[email protected]> <33451.1570009557@turing-police>
On Wed, Oct 02, 2019 at 05:45:57AM -0400, Valdis KlÄ?tnieks wrote:
> On Wed, 02 Oct 2019 01:55:13 -0600, "Keith Medcalf" said:
> > It is a common fallacy that TLS connections are authenticated. The vast
> > majority of them are not authenticated in any meaningful fashion and all that
> > can be said about TLS is that it provides an encrypted connection between the
> > two communicating applications. This is perhaps why it is call *transport*
> > layer security ...
>
> Another major disconnect is that TLS validates the hostname that the browser
> decided to connect to, not the host you thought you were connecting to..
Sadly, the W3C is stonewalling on the WebMindReading API.
- Matt