xxiaoxxiao 12911 silver badge22 bronze badges one Even when SNI is just not supported, an middleman capable of intercepting HTTP connections will typically be effective at checking DNS concerns way too (most interception is finished close to the client, like on the pirated consumer router). In order that they should be able to see the DNS names.Cre