idna_ssl
Patch ssl.match_hostname for Unicode(idna) domains support
Decision gist · record as of 2026-08-14
No. The package is abandoned (last release 2018-07-05, repository archived) with high install friction. Modern Python versions have addressed the underlying issue. On older Python versions, the lack of maintenance makes this a poor choice; upgrading Python is the better path.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires patching before importing HTTP client libraries; the patch modifies global ssl.match_hostname behavior.
- High install friction due to source distribution; package is abandoned (last release 2018-07-05, repository archived), with no maintenance for nearly 6 years.
License · maintenance · safety
permissive license (permissive) — Licensed under MIT (permissive), imposing no restrictions on use or redistribution.
last release 2018-07-05 (2962 days) · last repo commit 2020-10-21 · 9 stars · archived
0 known vulnerabilities (OSV.dev, 2026-08-14) · 696,973 downloads/mo, #5,301 on PyPI
Alternatives
Verify before relying
pip install idna-ssl
from idna_ssl import patch_match_hostname
patch_match_hostname()
import ssl
# ssl.match_hostname now supports Unicode domains- Whether the underlying ssl.match_hostname issue has been resolved in Python 3.7+, making this patch unnecessary.
- Current compatibility with Python versions beyond 3.7 (classifiers only list up to 3.7).
- Whether IDNA2008 standard issues mentioned in the description have been addressed in Python's standard library.
What it is and what it does
idna-ssl is a monkey-patch for Python's ssl.match_hostname function to handle Unicode (internationalized) domain names in HTTPS certificate validation. When applied, it allows SSL certificate matching to work correctly with domains containing non-ASCII characters, which would otherwise fail during hostname verification in HTTPS connections.
The package was created to work around a Python bug where Unicode domains could not be validated. It patches the ssl module globally before any HTTP client imports. However, the package is no longer maintained; the last release was 2018-07-05 and the repository is archived. The description notes that the core issue was fixed in Python 3.7, though IDNA2008 standard compliance remained incomplete at that time.
Use it for
- Making HTTPS requests to internationalized domain names with HTTP clients on Python 3.3–3.6.
- Patching legacy Python environments that lack native Unicode domain support in ssl.match_hostname.
- Testing applications that connect to non-ASCII domain names on older Python versions.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
No.
The package is abandoned (last release 2018-07-05, repository archived) with high install friction. Modern Python versions have addressed the underlying issue. On older Python versions, the lack of maintenance makes this a poor choice; upgrading Python is the better path.
Install
idna-ssl on PyPI
Before you install
High install friction due to source distribution; package is abandoned (last release 2018-07-05, repository archived), with no maintenance for nearly 6 years.
Requires patching before importing HTTP client libraries; the patch modifies global ssl.match_hostname behavior.
License in practice
Licensed under MIT (permissive), imposing no restrictions on use or redistribution.
Quickstart
pip install idna-ssl
from idna_ssl import patch_match_hostname
patch_match_hostname()
import ssl
# ssl.match_hostname now supports Unicode domains
Verify before relying
- Whether the underlying ssl.match_hostname issue has been resolved in Python 3.7+, making this patch unnecessary.
- Current compatibility with Python versions beyond 3.7 (classifiers only list up to 3.7).
- Whether IDNA2008 standard issues mentioned in the description have been addressed in Python's standard library.
Package facts
| License | permissive license permissive |
| Python support | Not specified |
| Install friction | High. Source build required |
| Runtime dependencies | None |
| Maintenance | Abandoned 2,962 days since the last release |
| Last repo commit | repository archived |
| First released | |
| Downloads | 696,973 / month, #5,301 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 4 - BetaIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.3Programming Language :: Python :: 3.4Programming Language :: Python :: 3.5Programming Language :: Python :: 3.6Programming Language :: Python :: 3.7 |
Evidence: idna-ssl-1.1.0.tar.gz
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “unicode domain ssl certificate validation”
- idna_sslPatches Python's ssl.match_hostname to support Unicode (IDNA) domain…
- certbot-dns-directadminA Certbot plugin that automates DNS-01 challenge completion for Let's…
- certbotCertbot is a command-line client that automatically obtains TLS…
Give your agent the search over MCP, or paste the wish link into any chat.
More Cryptography packages
Certifi provides Mozilla's curated collection of root SSL certificates for Python applications to validate TLS hosts and verify certificate trustworthiness.
cryptography provides cryptographic recipes and low-level primitives for symmetric encryption, message digests, key derivation, and other common cryptographic algorithms in Python.
Pure-Python RSA encryption, decryption, signing, and key generation following PKCS#1 v1.5, with command-line and library interfaces.
pyOpenSSL wraps OpenSSL's SSL/TLS functionality for Python, providing high-level connection objects and certificate handling through a Python-friendly interface around OpenSSL's cryptographic operations.
Provides Microsoft Entra ID token-based authentication for Azure SDK clients through a set of TokenCredential implementations that handle OAuth flows and managed identity support.
PyNaCl provides Python bindings to libsodium for digital signatures, secret-key and public-key encryption, hashing, message authentication, and password-based key derivation.
See also backports.ssl_match_hostname · idna · domain2idna · apeye-core · publicsuffix2 · linkify-it-py · dnspython · python-certifi-win32 · ada-url · tlds