Re: International domain names may pose threat

From: Arthur van Dorp (arthur_vd@gmx.net)
Date: Fri Feb 11 2005 - 04:13:39 EST


> As such you shouldn't depend on the DNS to return reliable data, if
> it matters encrypt it using established chains of trust, be it GPG or
> HTTPS.

That's the problem here. You can buy a valid SSL certificate for your
homographic domain. The chain of trust is broken. Certificate agencies
should immediately introduce procedures to prevent frivolous homograph
domains from being certified.

Arthur



This archive was generated by hypermail 2.1.3 : Mon Feb 28 2005 - 23:00:01 EST