[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: BIDI (was: Stringprep Considered Harmful)



Steve Hanna provided the following comment:
>I agree with removing the bidi check from LDAPprep.
>The purpose of LDAPprep and PKIXprep is to allow
>LDAP servers and certification path validators to
>compare Unicode strings in a reasonable and predictable
>manner. Human comparison of strings is not an
>important part of the use case so spoofing is not
>a big concern. The bidi checks outlaw useful Unicode
>strings without providing any benefit in this context.
>Therefore, we should remove them.

-- Kurt