Re: [idn] IDN spoofing
Hans Aberg <[email protected]> Mon, 21 Feb 2005 19:57:00 +0100
| Newsgroups | gmane.text.unicode.devel,gmane.ietf.idn |
|---|---|
| Message-ID | <BE3FEB31.C6F%[email protected]> |
At 12:42 +1100 2005/02/20, George W Gerrity wrote: >Thus, our r¥le reduces to providing some automatic methods to help the >authorities deal with the homograph problem, and we can quit discussing >the question of how to enforce authorities to adopt sensible naming >conventions: that ultimately belongs to the realm of law and >regulation. The suggestion I made, was to use a function to detect confusables by declaring them equivalent, but retaining the full Unicode character set for representing the IDN's. If this is used at the registration level only, the only thing that happens when somebody enters a confusable, is that it is rejected. There is a problem only when an authority admits parallel, confusable names to be registered. One can in fact use more than one function on the Unicode character set, in order to detect different types of confusions. If a name can be confused by an already registered name, then one might declare that this requires a special registration process, i.e., some humans standing by determining by hand whether these names are separated enough for registration. Hans Aberg