💾 Archived View for bbs.geminispace.org › u › totroptof › 2576 captured on 2023-11-14 at 10:38:51. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2023-11-04)

➡️ Next capture (2023-12-28)

🚧 View Differences

-=-=-=-=-=-=-

Comment by 🚀 totroptof

Re: "Has there ever been a discussion regarding use of DoH or..."

In: s/Gemini

Yeah, I was just reading about ECH. It seems to involve a separate, pre-TLS-handshake handshake using keys fetched from DNS records. The whole use-TLS-to-encrypt-HTTP-to-encrypt-DNS-to-encrypt-pre-TLS-to-encrypt-TLS thing is a little mind-melting to me 😅

🚀 totroptof

Jun 29 · 5 months ago

1 Later Comment

☀️ mike · Jun 30 at 18:23:

It's definitely not simple :)

Original Post

🌒 s/Gemini

Has there ever been a discussion regarding use of DoH or DoT for name resolution in Gemini clients? I was just thinking that the emphasis in Geminispace on single or few-tenant capsules partially neuters the confidentiality of TLS given plaintext DNS… but I guess even with encrypted DNS queries a similar issue crops up with IP addresses.

💬 totroptof · 5 comments · Jun 29 · 5 months ago