You might want to update this remedy with The point that TLS 1.three encrypts the SNI extension, and the biggest CDN is undertaking just that: blog.cloudflare.com/encrypted-sni Needless to say a packet sniffer could just do a reverse-dns lookup with the IP addresses you might be connecting to. Observe however that https://luisk272tkz6.liberty-blog.com/profile