FINDING · DETECTION

In China's Great Firewall, SNI filtering is almost never the sole blocking mechanism: only 70 of the 21,446 SNI-filtered sites are exclusively censored via SNI. The GFW uses SNI filtering as a 'third gatekeeper' — applied after DNS hijacking and IP blocking — and maintains separate blacklists for SNI filtering and DNS hijacking, evidenced by 2,764 sites under DNS injection but not SNI filtering.

From 2019-chai-importanceOn the Importance of Encrypted-SNI (ESNI) to Censorship Circumvention · §4.1 · 2019 · Free and Open Communications on the Internet

Implications

Tags

censors
cn
techniques
sni-blockingdns-poisoningip-blocking

Extracted by claude-sonnet-4-6 — review before relying.