Live data from Hacker News

As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

blog.easydns.org

41–50 of 71 posts

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#41

Earlier quoted context omitted.

Hopefully not since 2003 when the FTC had a court enjoin that specific company from making misleading statements about renewals in their postal mail. The mails they send out now look like this: "As a courtesy to domain name holders, we are sending you this notification of the domain name registration that is due to expire in the next few months. When you switch to Domain Registry of America, you can take advantage of…

It was past 2003. I think I registered jrock.us in 2004. But yes, they may have mentioned "this is not a bill", but if they did, the font was so small as to be unreadable. I knew it wasn't a bill because I knew that my domain was registered through someone else.

Yes, I just got one. It's extremely misleading.

There is print that says "this is not a bill" about 6-10 sentences in, but is hardly discoverable without careful consideration. Considering the whole page is covered by text, most people would skim and think "oh shit I owe money don't I?!"

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#42

Earlier quoted context omitted.

google.com appears to use a google.com email address in its DNS record.

Google probably have a real live person they can call if this gets messed up, or even has the potential to get messed up a few months from now.

[deleted]

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#44
post #31
post #28

How is this different from all the other online services that require you to click a link in an email in order to verify it, and refuse to give you full membership until you do so? Some of the registrars I use have implemented this policy lately. Turns out it's a non-issue as long as your contact info is valid and up to date (which it should already be). It doesn't conflict with whois privacy, either, contrary to all…

"(which it should already be)." No, why should domains be required to attached to an individual person?

Domains are required to be attached to an email address that can actually receive emails.

An email address is not an individual person.

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#45

This is apparently so the physical mail spammers can send me more physical mail along the lines of "This is the Domain Registry of America! Pay us $1000 to keep your domain!" Uh, no. Where's the FTC when I need it...

I got email from the people who run .us domains demanding a photo of my driver's license to prove I'm American. They did not understand why I might think they were scammers and want them to verify their identity first, nor did they understand how to verify their identity.

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#46
post #6

The title is pretty much linkbait. If you change registrar-level things about your domain, they're now required to confirm your contact info with you. This isn't a "DDoS", or "deadly", or any of that nonsense: it's a new strategy to ensure whois data stays updated. Whether or not it's an effective strategy for keeping whois data accurate is another debate (I don't think it is), but talking about it like some maliciou…

If ICANN really wants whois information to be accurate they should require registrars to provide functional privacy screens including email forwarding for no charge or at most a nominal fee. And then build a common process to break the screen in the event of a reasonable and unresolved complaint (or legal requirement).

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#47
post #39

ICANN is a mafia! They did this to actually force some old domains to get back into the market. ICANN as an organization will profit little from this, but the people bribing them (domainers, auction sites, domain escrows, etc.) will vastly profit from it. Imagine what would happen if somebody sends you a letter and they get back a letter saying that you cannot receive the letter as you didn't verify your name with US…

[deleted]

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#48
post #6

The title is pretty much linkbait. If you change registrar-level things about your domain, they're now required to confirm your contact info with you. This isn't a "DDoS", or "deadly", or any of that nonsense: it's a new strategy to ensure whois data stays updated. Whether or not it's an effective strategy for keeping whois data accurate is another debate (I don't think it is), but talking about it like some maliciou…

It's still dodgy when it comes in via email along with all the usual phishing and 419 crap.

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#49
post #24

Okay why are we still using a centralized domain name system with authorities? Do we enjoy the crazy keyholders from various countries meeting in secret thing? We can have many decentralized ways of registering and transferring domains. Namecoin is one, but how hard is it to decentralize the DNS database?

Namecoin is a stupid idea, as many/most people can't participate, only people with botnets or dedicated mining hardware.

Alternate DNS roots are just scams, as the intention is to extract more money so people have to protect their name by not only buying many TLDs in the real DNS, but in an extra one as well.

Re: As Deadly as a DDoS: ICANN Unleashes the Whois Accuracy Program

#50
post #28

How is this different from all the other online services that require you to click a link in an email in order to verify it, and refuse to give you full membership until you do so? Some of the registrars I use have implemented this policy lately. Turns out it's a non-issue as long as your contact info is valid and up to date (which it should already be). It doesn't conflict with whois privacy, either, contrary to all…

It's different because in all other services where you are required to verify your identity, your services do not start working until you do so.

This applies to domains that are already working. If you update your whois record and don't do this, it stops working.

Big difference.

Post reply on HN