[dnsdist] A SNI with a raw IPv6 address closes the DoT connection

Stephane Bortzmeyer bortzmeyer at nic.fr
Fri Mar 27 11:20:53 UTC 2020


I observe that sending a SNI which is a host name or an IPv4 address
works fine but when the SNI is a raw IPv6 address, the TLS connection
is immediately closed by the server.

Is it my fault or the one of dnsdist?

dnsdist 1.4.0 (Lua 5.1.4 [LuaJIT 2.0.5])
Enabled features: cdb dns-over-tls(gnutls openssl) dns-over-https(DOH) ebpf ipcipher libsodium lmdb protobuf recvmmsg/sendmmsg systemd


More information about the dnsdist mailing list