ECH branch finally merged to OpenSSL master!
@bagder Finally, I remember when I was hoping for it to be in time for 3.5.
@bagder Nice!
@icing of course this subsequently showed a bug in curl, but this proves people can now finally start toying with this in real life
@bagder ech? Encrypted Client Hello? Thought that was adopted everywhere ages ago if so... Anyone know the current cross-project state eg Apache, Nginx, FireFox, ...
@falken @bagder Firefox will use ECH if encrypted DNS is used.
@falken Browsers have it since a while back, but it's been slow to deploy because of the standard pattern of recent years: OpenSSL has been slow to go there.
@bagder ta! Now it's a waiting game for the distros I suppose
@falken yah, as we just now can start to test these things *for real* it will take a little more until users of OpenSSL-ECH are ready for use. In curl for example, we still do ECH only as "experimental"
@bagder did it slow things to crawl ? let's say recent developments have not been very performing..
@bagder
Finally. Now we have to wait for the release :)