Re: International domain names may pose threat

From: Simon Waters (simonw@zynet.net)
Date: Fri Feb 11 2005 - 04:22:10 EST


On Friday 11 Feb 2005 9:13 am, Arthur van Dorp wrote:
> > As such you shouldn't depend on the DNS to return reliable data, if
> > it matters encrypt it using established chains of trust, be it GPG or
> > HTTPS.
>
> That's the problem here. You can buy a valid SSL certificate for your
> homographic domain. The chain of trust is broken. Certificate agencies
> should immediately introduce procedures to prevent frivolous homograph
> domains from being certified.

Oh I agree if this happens, but this is a step beyond just registering a
domain. Although it can of course be revoked if it is misused - assuming
everyone has working CRL lists in there https implementation - I mean they
would be valueless without ;)



This archive was generated by hypermail 2.1.3 : Mon Feb 28 2005 - 23:00:01 EST