Live data from Hacker News

.name Termination

neil.fraser.name

111–120 of 551 posts

Re: .name Termination

#111

> Minutes after my daughter was born, I also registered beverly.fraser.name. ...minutes?

Consider whether you'd be questioning this if the author had written that within minutes of his daughter being born, her photo was on Facebook. The only thing it suffers from is not being normalized and taking marginally more* effort, while being nowhere nearly as creepy.

* or arguably the same amount or less; for additional context: the author is an ex-Googler

Re: .name Termination

#112
post #22

You might want to write to the CA attorney general. Former AG Xavier Becerra was able to dissuade ICANN from letting the .org fuckery happen, maybe Bonta could try to strong arm ICANN in this case.

I wonder which tech nonprofit would be best to champion this cause. Doesn't seem quite the EFF's domain.

Re: .name Termination

#113
There's a DNS wizard at my job (not doing DNS stuff currently; but in his past life), and while he was talking to me about certain topics my eyes glazed over, and I thought, "Man, surely that won't affect me, right?"

Well, it's still not affecting me, personally, but wow, seeing articles like this makes it feel just a tiny bit more real.

Re: .name Termination

#114

Earlier quoted context omitted.

geez, dude, someone woke up on the wrong side of the bed this morning...

> geez, dude, someone woke up on the wrong side of the bed this morning... 5 seconds on wikipedia or google would have stopped them spreading completely dangerous FUD about .co.uk.

[flagged]

Re: .name Termination

#115
post #41

Earlier quoted context omitted.

Also note that their response is the exact length of the shortest allowed one, and yet still wrong.

I want to hear you justify, with perfect gravity, “N/A.” being the exact same length as “None.” Pictures of handwriting or specific fonts accepted. :D

It's _almost_ the same length if you count the period on "N/A." but not on "None."

Re: .name Termination

#116

It kind of seems like an insane TLD structure to begin with, right? I always thought .co.uk was bad (you're just pinning yourself to whoever owns the .co. part, but at least browsers have some suffix list where you can't, I don't know, hijack some login cookie for all of .co.). Joe Smith and John Smith can independently register joe.smith.name and john.smith.name, do browsers have a wildcard suffix list for the 2nd l…

Since neither smith.name nor the wildcard *.name appear in the Public Suffix List ( https://publicsuffix.org/ ), browsers would likely allow any page on a *.smith.name domain to set cookies for .smith.name. There was an effort to properly handle the .name 2LDs, but it was never resolved because there’s no easy way to tell a reserved 2LD (open for 3LD registrations only) apart from a normal 2LD on .name: https://githu…

I think this says more about how the cookies security model is stupid. They should always have been scoped to the single, exact name they were set from and nothing else. Websites would have had to be designed a bit more thoughtfully.

Re: .name Termination

#117

Earlier quoted context omitted.

.co.uk is run by the same people as .uk. There is no additional org that you trust when you register a .co.uk: https://en.wikipedia.org/wiki/.uk#Second-level_domains > do browsers have a wildcard suffix list Yes: https://publicsuffix.org/ and they have discussed this situation here: https://github.com/publicsuffix/list/issues/2306

I know about the public suffix list - I was wondering about the wildcard specifically. In the very issue you linked to, as of 2025, it seems this was still unresolved...: > We have no plans to modify the .name entries at this point in time. We are aware of the implications of adding a wildcard, therefore we won't.

I'm just saying that they have discussed the situation. They seem to have no answer and for cookies and similar things the answer probably is "maybe don't run security critical web stuff in the third level under .name".

IIRC orgs like letsencrypt also use the PSL for rate limits, so there are probably more issues that are not browser-based.

Re: .name Termination

#118
post #55
post #22

You might want to write to the CA attorney general. Former AG Xavier Becerra was able to dissuade ICANN from letting the .org fuckery happen, maybe Bonta could try to strong arm ICANN in this case.

What was the deal with .org? EDIT: seems like Ethos Capital private equity firm wanted the .org registry, and Xavier Becerra (Attorney General of California at the time) wrote a letter that played major role in transaction being rejected > Dear Messrs. Botterman and Marby: > > I urge ICANN to reject the transfer of control over the .ORG registry to Ethos Capital. > The proposed transfer raises serious concerns that c…

Thanks yeah was too lazy to go searching for a link.

Re: .name Termination

#119

It kind of seems like an insane TLD structure to begin with, right? I always thought .co.uk was bad (you're just pinning yourself to whoever owns the .co. part, but at least browsers have some suffix list where you can't, I don't know, hijack some login cookie for all of .co.). Joe Smith and John Smith can independently register joe.smith.name and john.smith.name, do browsers have a wildcard suffix list for the 2nd l…

Surprisingly the public suffix list doesn't list `*.name`. So they're indeed not properly isolated from each other. https://publicsuffix.org/ edit: apparently not all second level domains in .name are public suffixes anymore, so a wildcard addition wouldn't be correct.

It wouldn't surprise me if that is (maybe even a large) part of the reason for this change.

Re: .name Termination

#120
post #100

Earlier quoted context omitted.

I'm working on same for my family since I want to properly degoogle a bit. One thing I think long term - if I give my kids first-name @ last name , that means that I forever hold power over their email. Which isn't great. But what's the alternative? Register one full domain name per kid? Even ignoring the cost, the ergonomics are awful. Imho email is missing a feature for nameless email addresses for when somebody ju…

From what I can tell most people do something like me@myname.whatever or hi@domain.

[deleted]
Post reply on HN