Skip to content

Commit

Permalink
Merge pull request #114 from daidoji/international-domain-names-proposal
Browse files Browse the repository at this point in the history
Added section about unicode in domain names.
  • Loading branch information
2byrds authored Dec 20, 2023
2 parents c62ef05 + cb9aa81 commit 013f9fa
Showing 1 changed file with 8 additions and 0 deletions.
8 changes: 8 additions & 0 deletions spec/security_considerations.md
Original file line number Diff line number Diff line change
Expand Up @@ -55,6 +55,14 @@ be valid. This has two meanings, both of which are required:
If a URL of a DID document or [[ref: KERI event streams]] results in a redirect, each URL MUST satisfy the same security
requirements.

### International Domain Names

Like `did:web`, due to [[spec:DID-CORE]] identifier syntax not allowing Unicode in method name or method specific identifiers, implementers should be cautious when implementing support for DID URLs that rely on domain names or path components that contain Unicode characters.

See also:
* [UTS-46](https://unicode.org/reports/tr46/)
* [[spec:rfc5895]]

### Concepts for securing `did:webs` information

The following security concepts are used to secure the data, files, signatures and other information in `did:webs`. We characterize each concept with high, medium and low security to orient readers to the situational relevance.
Expand Down

0 comments on commit 013f9fa

Please sign in to comment.