Sure, in TLS 1.3, there's something called ECH / Encrypted Client Hello which even encrypts the SNI.

Sure, in TLS 1.3, there's something called ECH / Encrypted Client Hello which even encrypts the SNI. Cloudflare supports it (well, the edge side does), but it's behind a flag in every browser still I believe
Was this page helpful?