Hacker News new | ask | show | jobs
by thousand_nights 69 days ago
i use an extension called OhMyECH to show whether a website used ECH, and it is currently very rare that i encounter one that does.

at least none of the major websites on the internet do.

1 comments

adding, one can test it here [1] though I think it also depends on the client using DoH [2] For people already using Cloudflare or Google DoH DNS it should just work.

To get ECH to work for me I had to enable DoH in my local Unbound DNS daemon and point Firefox to it rather than using unencrypted DNS on my LAN. I had to force a refresh (shift-F5 on tls-ech.dev). I only use my own recursive DNS so I get query logs and can block some ad/malware sites.

[1] - https://crypto.cloudflare.com/cdn-cgi/trace

[2] - https://tls-ech.dev/