←back to thread

411 points donpott | 8 comments | | HN request time: 0.457s | source | bottom
Show context
nickdothutton ◴[] No.44983582[source]
Step 1, pass law.

Step 2, demand compliance.

Step 3, upon not hearing of compliance, levy fines.

Step 4, upon non payment of fines, declare in breach of (2).

Step 5, block site from UK using DNS, in the same manner as torrent sites etc.

5 was always the goal, 2 to 4 are largely just performative.

replies(13): >>44983768 #>>44983781 #>>44983897 #>>44984120 #>>44984248 #>>44985133 #>>44985729 #>>44985841 #>>44985859 #>>44986058 #>>44986633 #>>44988012 #>>44991247 #
username332211 ◴[] No.44983781[source]
How does step 5 work? Switching DNS servers is trivial.
replies(4): >>44983797 #>>44985060 #>>44985122 #>>44988308 #
1. supriyo-biswas ◴[] No.44985122[source]
DNS poisoning and rejection of TLS handshakes based on SNI.
replies(4): >>44985299 #>>44985356 #>>44987100 #>>44989375 #
2. aaomidi ◴[] No.44985299[source]
This is why I’m really pissed off at how long ECH has taken.

And it’s all because of corporate interests at IETF.

3. LexiMax ◴[] No.44985356[source]
That's one domain down. Only 3,524 domains that just cropped up yesterday to go.

Never mind the fact that doing a Google search will surface pages on various wikis, git repositories, and other sites that conveniently list all of the mirrors.

replies(1): >>44986585 #
4. HDThoreaun ◴[] No.44986585[source]
Big enough barrier to stop most users
replies(1): >>44988536 #
5. worewood ◴[] No.44987100[source]
Encrypted Client Hello and DNS over HTTPS.
replies(1): >>44987829 #
6. supriyo-biswas ◴[] No.44987829[source]
Drop all ECH TLS connections, as China does.
7. LexiMax ◴[] No.44988536{3}[source]
Most users default to search engines instead of typing in a URL. I searched for "pirate bay" just now and all of the top results are mirrors or lists of mirrors.
8. themafia ◴[] No.44989375[source]
Creating the "Great Firewall of the UK" without actually calling it that: Priceless.