You might want to update this solution with The point that TLS one.3 encrypts the SNI extension, and the greatest CDN is accomplishing just that: weblog.cloudflare.com/encrypted-sni Naturally a packet sniffer could just do a reverse-dns lookup with the IP addresses you happen to be connecting to. You should utilize OpenDNS https://glorias036omy9.magicianwiki.com/user