You might want to update this answer with The reality that TLS one.3 encrypts the SNI extension, and the most significant CDN is carrying out just that: blog.cloudflare.com/encrypted-sni Naturally a packet sniffer could just do a reverse-dns lookup for that IP addresses you might be connecting to. Be aware having https://indirap812efa4.lotrlegendswiki.com/user