@misc{rfc8744, series = {Request for Comments}, number = 8744, howpublished = {RFC 8744}, publisher = {RFC Editor}, doi = {10.17487/RFC8744}, url = {https://www.rfc-editor.org/info/rfc8744}, author = {Christian Huitema and Eric Rescorla}, title = {{Issues and Requirements for Server Name Identification (SNI) Encryption in TLS}}, pagetotal = 13, year = 2020, month = jul, abstract = {This document describes the general problem of encrypting the Server Name Identification (SNI) TLS parameter. The proposed solutions hide a hidden service behind a fronting service, only disclosing the SNI of the fronting service to external observers. This document lists known attacks against SNI encryption, discusses the current "HTTP co-tenancy" solution, and presents requirements for future TLS-layer solutions. In practice, it may well be that no solution can meet every requirement and that practical solutions will have to make some compromises.}, }