Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Middleboxes that merely apply traffic shaping don't need to parse TLS headers, though. For optimising HTTPS flows, tcp/443 is good enough.

UDP often gets special treatment in that it gets dropped more often when the unlink becomes saturated. After all, UDP has no delivery guarantee so dropping the packets is less likely to cause retransmissions and other noise. DNS traffic may be excluded from this treatment, but I'd expect such shapers to also implement a transparent caching DNS proxy for performance improvements.



They shouldn't have to but they do . Like I said look at MPTCP and some of the issues that has in order to see other examples of middleboxes in action




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: