Latest news of the domain name industry

Recent Posts

African Union can’t register .africa domain

Kevin Murphy, April 11, 2022, Domain Policy

File this one under “ironic”. Also file it under “Maarten Botterman might be the worst pen-pal in history.”

It turns out that the African Union has been unable to register its domain of choice in the .africa gTLD — for which AU support was a crucial and divisive deal-breaker — because of rules insisted upon by governments.

The AU Commission’s vice chair, Kwesi Quartey, has asked ICANN to release the string “au” from the list that all contracted registries have to agree to reserve because they match the names or acronyms of intergovernmental organizations (IGOs).

The AU is an IGO, so its string is protected from being registered by anyone, including itself.

Quartey wrote, in a letter (pdf) to ICANN chair Botterman:

Unfortunately inclusion of the AU label within the IGO List had the unintended consequence of preventing any third party, including the African Union, from registering the acronym as a domain name (au.africa), yet there is an urgent need to change the African Union digital identifier on the internet from au.int to the .africa domain name.

“Urgent need”, you say? That’s ICANN’s specialty!

Botterman immediately sprang into action and sent his urgent reply (pdf), waiting just 21 short months from Quartey’s July 2020 urgent request to urgently pass the buck to the Governmental Advisory Committee.

Only the GAC can ask for a protected acronym to be removed from the list, he wrote. ICANN Org and board have their hands tied.

Also, removing “au” from the list will release it in all gTLDs, potentially allowing it to be registered by third parties in hundreds of other zones, so watch out for that, Botterman noted.

An additional wrinkle not noted in the letter, which may help or hinder the AU, is that Australia also has rights to the same string under an entirely different new gTLD program reserved list, because it matches the Aussie ccTLD.

You’ll recall that .africa was a contested gTLD in which AU support was the deciding factor.

The AU had originally offered to support a bid from DotConnectAfrica, but after the new gTLD program got underway it withdrew that support and conducted a registry tender that was won by ZA Central Registry, which now runs .africa.

DCA has been pursuing ICANN about this in arbitration and the courts ever since.

2 Comments Tagged: , , , , , ,

Microsoft seizes domains Russia was using to attack Ukraine

Kevin Murphy, April 11, 2022, Domain Policy

Microsoft says it has taken control of some domain names that we being using by hackers connected to the Russian security services to launch cyber attacks against Ukrainian, US and EU targets.

Company VP Tom Burt wrote that seven domains used by a group called Strontium were seized via a US court order and redirected to a Microsoft sinkhole, disrupting these attacks.

Burt wrote that the targets were Ukrainian media organizations and US and EU foreign policy think tanks, adding:

We believe Strontium was attempting to establish long-term access to the systems of its targets, provide tactical support for the physical invasion and exfiltrate sensitive information.

One wonders why Russia would use domains under US jurisdiction to conduct such attacks.

1 Comment Tagged: , , ,

Blacknight objects to ICANN 74 Covid waiver

Kevin Murphy, April 5, 2022, Domain Policy

Irish registrar Blacknight has objected to ICANN’s demand that attendees at its forthcoming 74th public meeting sign a legal waiver over the potential for Covid-19 infections.

CEO Michele Neylon has written (pdf) to his ICANN counterpart and chair Maarten Botterman to complain that the waiver is “excessive” and “unreasonable”.

Neylon said he’d consulted his lawyer and concluded: “I cannot sign this waiver and I obviously cannot ask any of my staff to do so either.”

“[The lawyers] agree that you would want to reduce your liability, but you cannot expect people to grant you a blanket exclusion of liability which includes actual fault,” he wrote.

As I reported earlier in the week, registering for ICANN 74 requires attendees to agree to a waiver which states:

I knowingly and freely assume all risks related to illness and infectious diseases, including but not limited to COVID-19, even if arising from the negligence or fault of ICANN.

The four-day June meeting is set to be the first to have an in-person component — in The Hague, the Netherlands — since the pandemic began two years ago. Zoom participation will also be a prominent feature.

Attendees are strictly expected to be double or triple-vaccinated, wear masks, and socially distance while at the venue. There will also be “health checks” whenever you enter the venue.

Blacknight has no complaint about these precautions, but wants ICANN to reconsider the legal waiver.

1 Comment Tagged: , , , , , ,

DNS Abuse Institute names free tool NetBeacon, promises launch soon

Kevin Murphy, April 5, 2022, Domain Services

NetBeacon has been picked as the name for the DNS Abuse Institute’s forthcoming free abuse-reporting tool.

The tool is expected to launch in early June, after software was donated by CleanDNS accelerated the development cycle, according to Institute director Graeme Bunton.

The system was previously using the working title CART, for Centralized Abuse Reporting Tool, as I blogged in February.

CleanDNS CEO Jeff Bedser is also on the board of Public Interest Registry, which funds DNSAI. Bunton wrote that PIR approved the use of the CleanDNS software under its conflict of interest policy, with Bedser recusing himself.

NetBeacon is expected to provide a way for authenticated abuse reporters to file complaints in a normalized fashion, potentially streamlining the workflow of registrars that subsequently have to deal with them.

Bunton has said that the service will be free at both ends, funded by non-for-profit PIR.

Comment Tagged: , , , , ,

Radix renewals drive growth as revenue hits $38 million

New gTLD registry Radix brought in revenue of $38 million in 2021, up 35% on the year before, the privately held company said today.

Profit was up 60% over the same period, Radix said, without disclosing the dollar amount.

It made almost as much in renewal revenue in 2021 as it made overall in 2020 — $27 million versus $17.9 million in the prior year. Last year 72% of revenue was standard-fee renewals versus 64% in 2020.

But the revenue from new regs was basically basically flat at $5.7 million versus $5.6 million — 15% versus 20% of overall revenue.

Revenue from premium-tier domains (both new regs and renews) was 12.5% of revenue, or $4.75 million, up from $4.5 million in 2020.

The customer country mix may be a little broader too. Radix said 47% of revenue now comes from the US, which is down from the 64% it reported for the previous year.

The company said .online is still the strongest performer in its portfolio.

Comment Tagged: , , , ,

GoDaddy formally signs .tv registry contract

GoDaddy has formally taken on the contract to run .tv, the ccTLD for the Pacific island nation of Tuvalu, according to the company.

GoDaddy Registry said that the deal was signed with the Tuvalu government at the Dubai Expo 2020 trade show on March 30.

The company won a tender process last December in which incumbent Versigin, which has been running .tv for 20 years, did not participate.

Tuvalu is expected to get a much bigger share of the revenue than it did under Verisign, which paid $5 million a year, but terms have not been disclosed.

GoDaddy senior director of business development George Pongas said in a press release that the parties are “convinced that together we can position the .tv ccTLD for significant worldwide growth and a new era of brand awareness and community engagement”.

GoDaddy is substantially more customer-facing than Verisign, and controls the registration path, so it’s not difficult to see how this could boost .tv’s sales.

The deal comes at an opportune time, as user-created video content is experiencing something of a boom.

Comment Tagged: , , , ,

ICANN lists the reasons I probably won’t be going to ICANN 74

Kevin Murphy, April 4, 2022, Domain Policy

“Don’t blame us if you die!”

That’s one of the messages coming out of ICANN, which has confirmed that it’s returning to in-person meetings for ICANN 74 this June.

The “hybrid” four-day meeting in The Hague is going ahead, but under strict Covid-19 mitigation rules that seem a bit too annoying for this particular potential attendee.

If you want to get in the venue, you’ll need to show proof of a full course of WHO-approved vaccinations, wear a face mask, stay an appropriate distance away from your peers, and subject yourself to a temperature check and “health screening” every time you walk through the door.

You’ll be issued a wrist-band on first entry that you have to keep visible at all times. If you lose it, you’ll have to re-verify your vaccination status.

As somebody who got irritated by even the metal detectors as pre-Covid ICANN meetings, this all seems a bit too much of a hassle for me, despite The Hague being pretty much right on my doorstep. I probably won’t go, at least not for the full four days.

There will be no on-site registration, and you’ll have to register your attendance online five days in advance of the meeting, which begins June 13.

ICANN’s also asking attendees to sign away their rights, and their children’s rights, to sue if they get sick, even if they catch the virus from general counsel John Jeffrey walking up and sneezing a Covid payload directly into their eyes.

As spotted by Michele Neylon, the registration process for ICANN 74 contains an extensive, obligatory waiver that contains the following text:

Participation in the Event includes possible exposure to and illness from infectious diseases including but not limited to COVID-19. While particular rules and personal discipline may reduce this risk, the risk of serious illness and death exists. I knowingly and freely assume all risks related to illness and infectious diseases, including but not limited to COVID-19, even if arising from the negligence or fault of ICANN. I understand that, unless otherwise confirmed in writing by ICANN, if I am suggested or required to take diagnostic tests, seek medical treatment, extend my stay due to quarantine or illness, or otherwise change travel arrangements, I am responsible for making such arrangements and all costs incurred. I understand that ICANN recommends that I obtain appropriate insurance to cover these risks.

I hereby knowingly assume all risks, and covenant not to sue any employees, board members, agents, executives, contractors or volunteers of ICANN or its affiliate for any expense, loss, damage, personal injury, including loss of life, illness, including but not limited to COVID-19, disability, property damage, or property theft or actions of any kind that I may hereafter suffer or sustain before, during, or after the Event, unless said expense, loss, damage, personal injury, including loss of life, illness, disability, property damage or property theft or actions of any kind is caused by the sole, gross negligence of ICANN or its affiliate. This Liability Waiver and Release is specifically binding upon my heirs and assigns and is knowingly given.

I agree to indemnify and hold ICANN and its affiliate harmless from and against any claims, suits, causes of action, loss, liability, damage or costs, including court cost and attorneys’ fees, and fees to enforce this Agreement, that ICANN may incur arising from my involvement in the Event.

This kind of waiver is par for the course with ICANN. Just ask any new gTLD applicant. ICANN really, really doesn’t like being sued.

ICANN has outlined its health-and-safety measures, which may change, here. The waiver can be read during the registration process.

1 Comment Tagged: , , , , ,

A public apology for my April Fool’s blog post

Kevin Murphy, April 1, 2022, Gossip

Earlier today, I published a lighthearted April Fool Day’s blog post concerning the fictional invasion of Los Angeles by a chthonic demon entity, accidentally summoned by a DNSSEC misconfiguration at an ICANN ceremony.

In the course of the post, I made multiple references to “enslavement” and “madness”, and as a result I’ve received a substantial number of complaints both privately and on social media about my choice of language.

Having considered these complaints, I’d like to publicly acknowledge that slavery and mental health are not laughing matters and should not be the subject of jokes, or even referred to in jokes, under any circumstances.

Please accept my sincerest apologies for these oversights. I shall endeavor to be more sensitive in my choice of words in future.

I am a work in progress.

8 Comments Tagged:

ICANN accidentally summons Lesser Old One in DNSSEC snafu

Kevin Murphy, April 1, 2022, Gossip

Southern California has come under the control of timeless demonic entities, plunging the Greater Los Angeles Area into a thousand years of darkness and torment, after a DNSSEC misconfiguration led to ICANN accidentally summoning a Lesser Old One into the mortal realm.

“I can confirm that there was an RRSIG glitch during the ceremony to sign the root zone ZSK for 2022Q2 and introduce HSM6W at our secure facility in El Segundo, California, today,” an ICANN spokesperson said.

“A downstream KSK misconfiguration was inadvertently introduced into the IMRS, resulting in a cascading Trust Anchor collapse across the entire constellation,” he said.

“This unfortunately led to the opening of a transdimensional portal to the Lost City of R’lyeh and the manifestation of an entity our initial analysis indicates may be Baoht Z’uqqa-Mogg, High Commander of the Armies of the Damned and celestial envoy for the mighty Cthulhu,” he added.

“And for some reason Facebook is down in Denver; we’re looking into that too,” the spokesperson said.

ICANN’s Seven Secret DNSSEC Key Holders were observed fleeing from the data center where the signing ceremony had been taking place, casting aside their cowls and robes and clawing at their eyes and skin, according to local reports.

They were pursued by a wailing, forty-foot-tall scorpion-faced lizard monster, emerging from a blinding disc of purple hellfire and bent on subjugating the human race to millennia of torment, local TV station Fox Action 5 Shooty Shooty Bang Bang News reported from the scene, shortly before its news chopper was plucked from the sky by a blistered tentacle and tossed into Z’uqqa-Mogg’s slavering, beak-like mandibles.

The entity was then seen slamming its cloven hoof into the ground and performing an obscene incantation, opening a rift through which poured a horde of bloodthirsty, crab-headed minions that proceeded to swarm through the streets of LA, devouring all in their path.

“This is the one thing we hoped would not happen,” the ICANN spokesperson admitted.

In response to the crisis, which has so far resulted in the deaths of millions and the enslavement into madness of half the US west coast, ICANN’s Security and Stability Advisory Committee has formed an ad-hoc working group to devise possible strategies to banish the Old One to its cthonic netherworld.

It’s planning to deliver an initial draft of its report no later than September 2023, after which its work will be opened to the Whatever’s-Left-Of-The-Public Comment process.

1 Comment Tagged:

ICANN “volunteers” want to get paid for sitting through pandemic Zoom calls

Kevin Murphy, March 29, 2022, Domain Policy

It’s often said that ICANN policy-making has become so complex, long-winded and thankless that it’s becoming harder and harder to attract and retain community volunteers, and now some of those community members are calling on ICANN to open its wallet to sweeten the deal.

ICANN could provide volunteers, particularly those who have participated heavily in remote meetings during pandemic travel restrictions, with monetary stipends or free business trips to future ICANN meetings, the At-Large Advisory Committee has said.

In a letter (pdf), ALAC chair Maureen Hilyard, along with members Marita Moll and Joanna Kulesza, ask that ICANN starts measuring the contribution of its volunteers and compensate them according to their work.

“There is a need to recognize and reward the efforts of volunteers who kept the public face of the institution going through 7 virtual public meetings,” they wrote.

“The pandemic ultimately exposed the limited efficiency of the existing volunteer system within the ICANN community. It is clear that the system of incentives currently in effect needs to be adjusted to address challenges of the post-pandemic reality,” the letter says.

ICANN’s thrice-yearly public meetings have been held over Zoom since the start of 2020 due to the coronavirus pandemic. Many community members have not sat in the same room as their peers for over two years.

ICANN 72 last October had the lowest turnout since records began, though this bounced back a little at ICANN 73.

ALAC’s suggestions for incentivizing its members include extending the term of leadership appointments to enable some face-time at future meetings, paying for “one or two trips to future ICANN meetings” and “a retroactive honoraria for those who would have been funded travellers during the period of virtual meetings, considering the fact that they were still incurring costs re: internet connection, electricity, food, etc”

An “honorarium” is a cash payment for services rendered on a voluntary basis. Basically, ALAC seems to be asking for travel expenses that were not incurred to be reimbursed retroactively regardless.

ICANN already has a program for reimbursing community members, such as those on metered connections, who incur extra connectivity charges during ICANN meetings, but it has regardless saved millions of dollars on funded travel since the pandemic started.

The letter goes on to say “volunteer work by definition is work without pay or compensation” but that “forms of monetary or in-kind compensation are possible”. These could include stipends, “symbolic gifts” and reimbursements.

Before you start getting outraged about the potential for high-priced IP lawyers and well-paid registry VPs putting their hands in ICANN’s pocket, ALAC is asking ICANN to distinguish between genuine volunteers and those who are paid for, or get a direct business benefit from, participating in community work.

ALAC defines volunteers as “individuals who commit time and effort to the work of ICANN with no personal connection to the domain name industry and who pay their own costs of participation, engagement and commitment to this work”.

That’s a rare thing in some segments of the community, but more common in the At-Large community.

Many of the issues raised in the letter were also discussed at the ALAC’s session with the ICANN board earlier this month.

2 Comments Tagged: , , , ,