secdir review of draft-ietf-idnabis-rationale-13.txt

Andrew Sullivan ajs at
Tue Oct 6 15:32:20 CEST 2009

On Mon, Oct 05, 2009 at 08:16:41PM -0400, John C Klensin wrote:

> computing DNSSEC values on anything but the A-label" or "because
> the A-label is the only thing an IDNA-conforming program can put
> in, or look up in, a zone, DNSSEC is not affected"?  I really

I sort of thought the latter was all that was intended, with the
concomitant point that, if you are an operator of a zone, there's a
logical requirement that any signing work you do has to happen after
U-label -> A-label transformation.


Andrew Sullivan
ajs at
Shinkuro, Inc.

More information about the Idna-update mailing list