Protection and mitigation mechanisms against IDN Homograph Attacks (Unicode Domain Spoofing)

Good morning,

I would like to know whether IPFire already integrates native protection against IDN Homograph Attacks, which are phishing techniques that exploit Unicode characters visually similar to ASCII to impersonate legitimate domains.

In particular, I’m interested in understanding whether there are mitigation mechanisms in place for:

  • DNS Resolver / DNS Proxy;
  • DNS filters based on reputation, blacklists, or threat intelligence;
  • Integrated Web Filtering or URL Filtering modules;
  • Integration with DNSSEC, RPZ (Response Policy Zones), or other protection systems against malicious domains;

Thank you for your support.