Deep packet inspection
Network equipment that examines the structure of traffic rather than only its destination address.
Glossary
Also called: Server Name Indication
What is SNI?
SNI is the field in a TLS handshake that names the site being requested, historically sent unencrypted even over HTTPS. It is how a network can see which site you are visiting despite the connection being encrypted, and it is the basis of several national filtering systems.
It is how a network can see which site you are visiting despite the connection being encrypted, and it is the basis of several national filtering systems.
Encrypted Client Hello addresses this, but deployment depends on both the browser and the site. A VPN hides SNI from your local network because the handshake is encapsulated inside the tunnel â not because the handshake moves. TLS is still negotiated end to end with the origin server, so the VPN operator and the exit server’s upstream network can read it exactly as your ISP would have.
Network equipment that examines the structure of traffic rather than only its destination address.
When name lookups travel to your ISP’s resolver instead of through the tunnel, exposing every domain you visit.
Terms are defined here because they appear in our scoring rubric or in provider reviews, not to fill a glossary.