On Friday 11 Feb 2005 9:13 am, Arthur van Dorp wrote:
>  > As such you shouldn't depend on the DNS to return reliable data, if
>  > it matters encrypt it using established chains of trust, be it GPG or
>  >  HTTPS.
>
> That's the problem here. You can buy a valid SSL certificate for your
> homographic domain. The chain of trust is broken. Certificate agencies
> should immediately introduce procedures to prevent frivolous homograph
> domains from being certified.

Oh I agree if this happens, but this is a step beyond just registering a 
domain. Although it can of course be revoked if it is  misused - assuming 
everyone has working CRL lists in there https implementation - I mean they 
would be valueless without ;)

Reply via email to