Consensus Call Tranche 8 Results

Vint Cerf vint at google.com
Wed Nov 5 14:00:12 CET 2008


Simon,

would a "bundle" approach like that take by CJK work better? if you  
register with Esszet you also register with "ss" and so on?

vint


NOTE NEW BUSINESS ADDRESS AND PHONE
Vint Cerf
Google
1818 Library Street, Suite 400
Reston, VA 20190
202-370-5637
vint at google.com




On Nov 5, 2008, at 3:47 AM, Simon Josefsson wrote:

> "Mark Davis" <mark at macchiato.com> writes:
>
>> It is still premature to add eszett and final sigma until we have  
>> some
>> accompanying text that addresses the security exploit.
>> The two possibilities I could think of are:
>>
>>    1. Change the prefix for xn--
>
> That would work, but it is costly.  It is good to keep this option in
> the discussion, as a sanity test of the cost-benefits of other  
> options.
> I claim that any solution that is more expensive to implement and  
> deploy
> than changing the xn-- prefix should be disqualified.  Of course, the
> difficult part is to assess costs.
>
>>    2. Recommend or require that if the name contains either eszett  
>> or final
>>    sigma, that any DNS lookup by client software has to be done  
>> twice: once
>>    with the original, and once with a second string that has these  
>> remapped to
>>    "ss" and sigma respectively, and is then NFC'ed.
>
> I'd like to see this option explored more in detail wrt stored strings
> and compatibility with non-DNS protocols.
>
> /Simon

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.alvestrand.no/pipermail/idna-update/attachments/20081105/c1b0a86c/attachment-0001.htm 


More information about the Idna-update mailing list