Re: Unicode domain names issue (Encrypting a "fake" domain name)
Anne van Kesteren <[email protected]> Mon, 17 Apr 2017 17:53:48 +0200
| Newsgroups | gmane.comp.mozilla.security |
|---|---|
| Message-ID | <CADnb78iN_9qY0H5De-EAgw=orB18KZhjhaHxZfdUvg3FhFs33Q@mail.gmail.com> |
On Mon, Apr 17, 2017 at 4:38 PM, Martin Heaps <[email protected]> wrote: > LetsEncrypt has a valid encryption certificate for the fake domain, It's not a fake domain, it just looks alike, but it's a valid domain for all intents and purposes and Let's Encrypt should not do a registrar's job. That registrars allow lookalikes to be assigned to different entities is a problem. https://bugzilla.mozilla.org/show_bug.cgi?id=1332714 tracks this. -- https://annevankesteren.nl/