[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [idn] Debunking the ACE myth



--On 01-07-20 14.46 +0900 Martin Duerst <duerst@w3.org> wrote:

>> I.e. the problem with using non-ascii in the labels in DNS, is that it is
>> really easy to get what I would call leakage into the application layer
>> protocols which can not handle other characters than ASCII.
> 
> As Dan and others have shown, that's really easy also for ACE.
> Even if we get all software doing it as planned, users will leak.

But if ACE leak to a non-IDN aware application the user will be able to use
the domainname.

  paf