การซ่อนเบื้องหลังโดเมน
Embed This Widget
Add the script tag and a data attribute to embed this widget.
Embed via iframe for maximum compatibility.
<iframe src="https://tldfyi.com/iframe/glossary/domain-fronting/" width="420" height="400" frameborder="0" style="border:0;border-radius:10px;max-width:100%" loading="lazy"></iframe>
Paste this URL in WordPress, Medium, or any oEmbed-compatible platform.
https://tldfyi.com/glossary/domain-fronting/
Add a dynamic SVG badge to your README or docs.
[](https://tldfyi.com/glossary/domain-fronting/)
Use the native HTML custom element.
การซ่อนเบื้องหลังโดเมนเป็นเทคนิคที่ใช้การกำหนดเส้นทาง CDN และผู้ให้บริการคลาวด์เพื่อปกปิดปลายทางที่แท้จริงของการรับส่งข้อมูล HTTPS ผู้โจมตีส่งคำขอ HTTPS พร้อมโดเมนที่ไม่เป็นอันตรายในช่อง SNI ซึ่งมองเห็นได้โดยผู้ตรวจสอบเครือข่าย ขณะที่วางโดเมนเป้าหมายจริงไว้ในส่วนหัว HTTP Host ที่เข้ารหัส เนื่องจากทั้งสองโดเมนใช้โครงสร้างพื้นฐาน CDN เดียวกัน การรับส่งข้อมูลจึงดูเหมือนไปยังโดเมนหน้า แต่ถูกกำหนดเส้นทางภายในไปยังโดเมนของผู้โจมตี ผู้ให้บริการคลาวด์รายใหญ่ได้ปิดการใช้งานนี้โดยบังคับใช้ความสอดคล้อง SNI/Host.
ตัวอย่าง
Malware authors configure their C2 server behind Cloudflare and use domain fronting to make C2 traffic appear as HTTPS requests to cloudflare.com, bypassing network inspection tools.