[UA-discuss] RFC 8398 "Internationalized Email Addresses in X.509 Certificates" implementation
Don Hollander
don.hollander at gmail.com
Thu Aug 27 07:24:13 UTC 2020
Thanks for this news. Well done to Maria and the CCTLD RU/РФ.
Any progress, by the way, with Yandex providing support for EAI? Google, MSFT & Apple now all EAI Phase 1 Ready – and CoreMail and XgenPlus EAI Phase 2 Ready.
From: UA-discuss <ua-discuss-bounces at icann.org> On Behalf Of Jiankang Yao
Sent: Thursday, 27 August 2020 3:23 PM
To: Dmitry Belyavsky <beldmit at gmail.com>; ua-discuss <ua-discuss at icann.org>; ua-eai at icann.org
Subject: Re: [UA-discuss] RFC 8398 "Internationalized Email Addresses in X.509 Certificates" implementation
Great news!
Thanks.
_____
Jiankang Yao
From: Dmitry Belyavsky <mailto:beldmit at gmail.com>
Date: 2020-08-26 20:09
To: ua-discuss <mailto:ua-discuss at icann.org> ; Mark Svancarek (CELA) via UA-EAI <mailto:ua-eai at icann.org>
Subject: Re: [UA-discuss] RFC 8398 "Internationalized Email Addresses in X.509 Certificates" implementation
Dear colleagues,
I'm happy to let you know that the support of RFC 8398 "Internationalized Email Addresses in X.509 Certificates" is just committed to the OpenSSL master branch. This support will go public in OpenSSL 3.0 (hopefully later this year).
The work was originally done with the support of CCTLD RU/РФ. Special thanks to Maria Kolesnikova!
On Wed, Jul 3, 2019 at 8:54 PM Dmitry Belyavsky <beldmit at gmail.com <mailto:beldmit at gmail.com> > wrote:
Hi all,
Coordination Center for TLD .RU/.РФ is happy to announce a draft implementation of RFC 8398 "Internationalized Email Addresses in X.509 Certificates" for OpenSSL: https://cctld.ru/en/news/news_detail.php?ID=21240
The implementation and some test examples are available for download here: https://cctld.ru/files/books/EAI.pdf (in Russian)
Direct links:
Draft implementation - https://cctld.ru/files/eai/rfc8398.diff
Test examples - https://cctld.ru/files/eai/root.tar.gz
Instructions - https://cctld.ru/files/eai/README.8398
The implementation covers the following cases:
- Displaying the EAI in X.509 certificates
- Verifying NameConstraints in X.509 certificate chains of trust
- Matching EAIs in X.509 with provided EAI.
Feel free to test the patch and send feedback to pr at cctld.ru <mailto:pr at cctld.ru> or to me directly.
--
SY, Dmitry Belyavsky
--
SY, Dmitry Belyavsky
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mm.icann.org/pipermail/ua-discuss/attachments/20200827/bf600905/attachment.html>
More information about the UA-discuss
mailing list