Top
Best
New

Posted by pavel_lishin 15 hours ago

.name Termination(neil.fraser.name)
1534 points | 406 commentspage 2
nubinetwork 13 hours ago|
> Once the 3rd-level domains are terminated, it is assumed that the now vacant 2nd-level domains will become available for registration. Should someone (other than me) scoop up fraser.name (...)

What's to stop someone from doing that, and keeping the status quo? Sure, it might be expensive, but pool together a few frasers for the initial buy, and make the money back on the sublets.

bityard 11 hours ago||
Well, nothing, but it does assume that Verisign doesn't have an unstated plan to do something else with .name. Domain registration is the real estate of the Internet and very little has happened in the last 30 years of domain name policy that has been for the benefit of anyone outside the the registrars.

For all we know, this is simply the first step in a series of moves for Verisign to better monetize the .name TLD in some novel fashion.

My evidence for this is that Verisign's own arguments for terminating the third-level domains are highly dubious. They claim that the third-level domains are too hard for them to manage. Bollocks: there are only 22,000 of them in use. That is a VERY small database that practically fits on a calculator and I refuse to believe that any manual labor around it is an outsized burden compared to pretty much any other semi-popular TLD. The second claim is that "the majority of those are not in use." Okay, if that's true, then where is the management burden coming from? That means tens of thousands of people are giving them money and getting nothing in return, isn't that the definition of an ideal business model?

It just doesn't pass the sniff test.

And finally, having read both of the linked documents, it sounds like people who have registered their .name for years in the future are not getting their money back. Are they likely to pay a second time, to a sub-registrar with no history?

xamde 11 hours ago||
Also, someone managed to run all this 20 years ago. Has technology gotten so much worse? Is RAM now THAT expensive?
toast0 8 hours ago||
Not just someone, Verisign managed to run this registry since its delegation.

Restrict future 3rd level registrations, offer a path to upgrade a 3rd level registration to a 2nd level registration for those 2nd level domains with a single registrant and the burden will decrease over time.

theandrewbailey 13 hours ago||
Depends on how much one trusts whoever's running fraser.name. Is it more or less than Verisign?
ZiiS 12 hours ago||
You have to trust them and Verisign; which will always be less then just Verisign.
Y_Y 12 hours ago||
Unless your trust for VeriSign is already zero
jonhohle 11 hours ago||
One of the reasons I stick with Big Email for my primary email is cases similar to this. If I host email and lose the domain one day, I’ve lost two factor on a thousand different services (the single factor on some). Big Email’s policy is to not reissue my address, should I lose it or die.

The .name scenario is even worse. One domain gives you access to tens of thousands of users email. It seems like a privacy nightmare.

I’m not sure how future auth and privacy will work, but my child lost a tracfone phone and some mixup had separated it from my account. There was no way to recover the number. If that was my personal phone, how difficult would it be to restore banking, medical, and government access to things that assume I’ll always have that number.

Doing the same with personal email seems like too big of a risk.

sunnybeetroot 11 hours ago||
You can look through my history how many times I’ve brought this up to people and they just don’t seem to care. A defence is that they’ll buy the domain for a century and not care once they’re dead which is fair but the situation in this article is a valid one. I will always stick with Big Email for accounts.
famfamfam 10 hours ago|||
I moved to a third-level .name domain in 2005 precisely because one of the Big Email providers (Google) locked me out of my account with no recourse; presumably because I had a very common email address that was getting a large number of login attempts from other people which had triggered some abuse automation.

At the time - before the explosion of new gLTDs - third-level .name domains were advertised as the 'correct' domain to register for individuals wanting personal email addresses.

sandcat_ 3 hours ago|||
Your response seems to imply those people are irrational, but it's really just different priorities. Yeah, you need to make sure you don't lose the domain. With Google/etc, you need to make sure you don't break any of their usage policies across their suite of apps, etc. Neither are super likely to happen. Neither are impossible, either.

(Update: as it happens… https://news.ycombinator.com/item?id=49548452)

Personally I like having a custom domain as I like the idea of being able to move between providers. So far, over the past decade, I've hosted my email with Google, Fastmail, Hey.com and then Fastmail again. I like being able to move it around if I find one provider better than another. Others won't care, that's fine too.

drdexebtjl 10 hours ago|||
I don’t see the problem if you stick with .com or the ccTLD for the country you live in.

To me, the risk these registries screwing me over is smaller than Big Email deciding I broke their ToS and shutting down my account.

I wouldn’t use these novel TLDs either.

xp84 10 hours ago|||
By Big Email are you just referring to the biggest providers (e.g. Google and Microsoft)? or is there another meaning?
wiether 10 hours ago||
If they're talking about Google or Microsoft, putting more trust in the worst tech companies than in the TLD of your country seems crazy to me.
ethanhawksley 10 hours ago||
I think it's pretty reasonable. The percentage of email accounts Google & Microsoft terminate seems far far lower than the chance I misconfigure my email or lose my domain
jonhohle 9 hours ago|||
I was talking about one of those. Specifically they have a policy of not reissuing email addresses. Once it’s registered it’s burned. If they were to reverse that policy, the sky would fall.
donmcronald 9 hours ago||||
I'd rather trust myself.

If you walk around all day with your wallet in your pocket, it might fall out and you'll lose it. Would you like me to hold onto it for you to make sure that doesn't happen?

xp84 4 hours ago|||
I agree with you and other selfhosting fans in spirit, I really do.

On the other hand, it's email. I was at a hospital to do a blood draw, and needed them to receive an email (insurance info). I sent them an email from my Gmail. We wait 4-5 minutes. I notice they're checking an office 365 outlook. So, I re-send the same message from my @outlook.com email. Arrives instantly.

Deliverability between MS and GOOG is normally really good, and even that wasn't working right that day. My self-hosted email server being able to deliver to them reliably every time is hopeless. "Big Email" has made it excruciatingly painful to not be on sending from one of their platforms, unless you're one of the big 5 or whatever platforms that send bulk email or bulk transactional email. The SendGrids, Amazon SES, etc.

sandcat_ 3 hours ago||
There's a difference between controlling the domain and self-hosting. You can still use Gmail and Outlook (I assume, I don't know for a fact) with a custom domain. But the difference is if any of those services become less reliable or whatever, you can move your email across to another provider. You can't do that if you're stuck on an @outlook.com address.

But also, even if you're self hosting on a server in your basement, you can still use SES to deliver your mail. Delivery is not an issue here.

thombles 6 hours ago|||
The reason we happily walk around with our wallets is because Big Finance and Big Government are willing to invalidate and reissue our credit cards and identity documents, maybe even help us out with the fraudulent transactions after it was stolen.
bigstrat2003 7 hours ago|||
I trust myself a hell of a lot more than I trust Google (or other big tech companies) to not terminate my account because of an automated process gone wrong. Not only are my own mistakes less frequent than theirs, I actually have recourse if I screw something up. Not so when big tech does.
bluebarbet 9 hours ago|||
Came to the same conclusion. With primary email I do not need multiple points of failure. The optimal solution is a contractual - paid - relationship with a single reputable email provider. There are a bunch of them.
koeliga 10 hours ago|||
The risk of losing your big email account is higher than losing your domain. Furthermore, if you happen to lose your domain, it will in most cases be easier to recover than a restricted account.
DaiPlusPlus 8 hours ago||
> if you happen to lose your domain, it will in most cases be easier to recover than a restricted account.

I used to think this, until I inadvertently let a registration fail to renew because I didn't update my expired credit-card's billing details with NameCheap - they did send me automated emails about it but I missed them, unfortunately. Their grace-period is only 30 days and I didn't notice the problem until 45 days had passed when my domain-name was bought-up by a spam-site-scammer and redirected the site to a porn/virus-downloader site (yes, those still exist).

I paid $1500 (uugghhh) for the UDRP process to get the domain-name back ($1000 UDRP fee, $500 for the lawyer to do the paperwork), and the UDRP panel ruled against me: their response reasoning made it clear that they never actually looked at my submitted evidence - and unfortunately that $1000 is nonrefundable, gaaaaah. I still haven't gotten that domain-name back. (I will say that my previous other UDRP cases all ruled in my favour; I don't know why/how I somehow drew a crappy arbiter in this case, I'm just vexed that they can rule against me without any right to appeal; I expected better).

noAnswer 5 hours ago||
The ratio between people who lost their "free big provider" account do to arbitrary algo decisions and people who lost their domain because they ignored provider's invoice for over a month must be 1.000.000 to 1. :-)

I use a prepaid provider. If at the day of the renewal there is no money "in the bank" they immediately release the domain. So yeah, I treat their reminders with priority. I really should change providers...

UltraSane 6 hours ago||
one neat thing having your own domain lets you do is have ANY <string>@domainyouown be sent to your inbox so this gives you unlimited email aliases. I often prefix the SOURCE of the email, like toyota@domainIown
jonhohle 1 hour ago||
I understand the advantages and have run email on my own domains for decades. Those aliases are used for business or partitioning senders. If they fail, my life goes on.
willwade 12 hours ago||
I worked for .name briefly right at the beginning of their entry into the world. Interesting but very odd part of my career.. Ill give it that.. I personally found the product at first a great idea but somewhat crippled by execution..
wmf 13 hours ago||
Discussion from yesterday: https://news.ycombinator.com/item?id=49516047
johnplatte 13 hours ago||
Wow! Years ago I initially bought my firstname.lastname.name, then I let it expire and then bought lastname.name. So glad I did!

Never dreamed that such a supposedly durable thing would just disappear. How hard is it really to preserve a global resource like this that exists only in software?

econ 11 hours ago||
I don't like the way domains work in general. It's really quite expensive if you are wise enough to buy everything that looks to much like your website.

Did buy https://ycombinator.us

Didn't buy https://ycombinator.co.uk

https://ycombinator.de

What useful functionality is there in selling these domains?

Expiring domains is bad for the web and selling them to someone else is as terrible as the article makes it out to be.

zamadatix 10 hours ago||
You're also never going to register e.g. xcombinator.* nor is that necessarily a domain which should never be sold on the basis it's similar to ycombinator.*. Rather than buy everything, buy the ones most likely to be accidentally entered for only the most common tlds so you can set up redirects or the like and then enforce and protect your trademark like you have to in any other situation.
jacobgkau 9 hours ago||
> Expiring domains is bad for the web

Short-term, it might seem like it would make sense for domain registrations to be permanent, but long-term, it introduces at least two insurmountable problems:

1. Unless some other cleanup mechanism is in place, eventually (like, hundreds of years into the future) domains will need to get longer and longer as people who owned old ones disappear and new people need new ones.

2. The infrastructure costs (while nominal) to keep existing domains functioning would not be sustainable in perpetuity without relying on the assumption of more and more domains always being sold.

ipython 13 hours ago||
From the Verisign application [0] for this change:

    > 2.1. What effect, if any, will the proposed service have on the life cycle of domain names?
    > None. There will not be any effect on the life cycle of domain names.
ehhh, how is that possibly true? This change (deleting all third level names) by definition affects the lifecycle of domain names ... by terminating them!

Many years ago I wrote articles bringing attention to the negative effects of Verisign's SiteFinder [1] - if you don't remember this, it's when Verisign hijacked NXDOMAIN by redirecting any unresolvable domain to a site they owned and controlled.

[0] https://itp.cdn.icann.org/en/files/consensus-policies/rsep-2... [1] https://en.wikipedia.org/wiki/Site_Finder

semiquaver 9 hours ago||
That document looks like the change tickets I see at work when investigating internal outages:

   Risk: none
   Rollback plan: N/A
aidenn0 6 hours ago|||
https://news.ycombinator.com/item?id=49558150
politician 12 hours ago||
"Well, it doesn't affect the lifecycle of domain names. The lifecycle is defined in some RFC somewhere, and this change doesn't modify that. Now, these particular domain name instances might be adversely affected, but you didn't ask about that." -- lawyers, probably.
donmcronald 9 hours ago||
You're closer than you think. Big companies and institutions just change the definition of words they don't like. In this case, they could argue that a domain's lifecycle is registration, renewal (optional), deletion. Deletion is part of the expected lifecycle, so this doesn't change it.

The ambiguity is a feature so they can do whatever they want. We all know it's bullshit, but it gives the parties involved the ability to disenfranchise one group to benefit another while claiming they're following the rules.

donmcronald 8 hours ago||
Here's an example of someone genuinely making that argument in another hacker news post. I'm having a laugh about how spot on I was.

> Changes to the life-cycles of domains is a question meant to ask if this seeks to modify the life cycle policy, which is a separate type of change from termination of the service as a whole. I.e. this does not seek to change the life cycle policy, it seeks to terminate the service offering completely - making the life cycle policy irrelevant.

baylisscg 5 hours ago||
What's wild is that when initially launched you could only register 3LD domains. If you were quick out the gate and registered one in 2002 and have been using 10 year renewals you're about to have a domain you've owned for almost a quarter century with 6 years left on its registration nuked.
decimalenough 13 hours ago||
I've had a .name domain forever and I had no idea first.last.name was even a thing, meaning that it was possible to register this without owning last.name.

That said, my domain is simply unusual.name, and everybody in my family has email addresses in the form first@unusual.name. So this is a no-op for me, and I gather www.unusual.name will also continue to work, since I own the 2nd level outright.

NelsonMinar 12 hours ago||
I'm sure Verisign would be thrilled to have a bidding war between the legitimate owners of fraser.name and a bunch of third parties they suddenly enabled.
febusravenga 13 hours ago|||
This is silly question, but is your family managing trust in you as lone guy - cousin, father, brother - having potentially access to all their emails?

I feel that I more trust some corpo (Google, etc) that one particular person.

I don't imagine setup where you can effictevely guarantee them full privacy.

decimalenough 12 hours ago|||
I don't store their emails, I use forwardemail.net and they have a pretty reasonable privacy policy: https://forwardemail.net/en/privacy

Some people in my family use it as their main address, others don't, it's entirely their call.

But yes, ultimately I control the domain and could be nefarious if I wanted to. But there's a certain baseline level of trust as a family, I'm reasonably certain my wife won't poison the milk in the fridge and she's reasonably certain I'm not going to read her emails.

sunnybeetroot 11 hours ago||
How do you manage the bus factor? You die tomorrow and what happens to management of the domain and therefore access to their emails?
decimalenough 5 hours ago||
There's a document explaining how it all works, and I have Google's Inactive Account Manager setup to transfer credentials to my trusted contacts if I go permanently offline.

https://support.google.com/accounts/answer/3036546?hl=en

cesarb 12 hours ago||||
> This is silly question, but is your family managing trust in you as lone guy - cousin, father, brother - having potentially access to all their emails?

I believe this is a very common setup: the "computer wizard" kid of the family manages the computers for the whole family. Not just emails, they have access to the whole computer (and have to fix when it breaks).

bityard 11 hours ago|||
I manage the email accounts for the others in my household because it's free for them and I'm happy to do it. Plus, they trust me more than they trust a random tech company. Maybe that is not a universal thing among all families or parts of the world.
sunnybeetroot 11 hours ago||
How do you manage the bus factor? You die tomorrow and what happens to management of the domain and therefore access to their emails?
xp84 10 hours ago|||
The implication, that one should make a plan for that, is a valid reminder not enough of us probably do.

But it hardly needs to be difficult. If you're running dovecot and postfix on a server somewhere then yes, family is screwed. But it's simple to use either some mail forwarding service that you pay for with a credit card, or something like fastmail (etc). Leave 2 pages of instructions for how to log into and renew the domain (print the QR code used for the 2fa enrollment!) and how to log in and pay for whatever the underlying services are. Place in a binder and label "Family.Name Email Management" and put it with your other important documents.

bityard 10 hours ago|||
I stay out of the way of fast-moving buses!

But more seriously, my domain and VPS is on auto-pay, so it doesn't just shut off the day I die. My survivors will have plenty of time to back up their emails and do whatever they want with them afterward.

Plus, the password for my computers and keychain is in a safe-deposit box if they feel like handing it over to a trusted tech-savvy friend of the family to shut down properly.

vidarh 13 hours ago||
It was deemphasized pretty early because people didn't understand it.

It made sense to us because our starting point was an email service letting people share lastname.sometld, but we never got close to as many registrants on .name as we had users on the webmail service (we had a couple of million accounts on that when it was sold to one of Marc Cubans companies for a relative pittance in the aftmath of the dot com bubble bursting)

anominal 12 hours ago|
I am also one of the 22,000 people who have a third-level .name domain and I am livid about this, not least because Verisign flat-out lied in their proposal to ICANN: (https://itp.cdn.icann.org/en/files/consensus-policies/rsep-2...) :

"2.1. What effect, if any, will the proposed service have on the life cycle of domain names? None. There will not be any effect on the life cycle of domain names.

...

2.3. Explain how the proposed service will affect the throughput, response time, consistency or coherence of responses to Internet servers or end systems. There will be no effect on the throughput, response time, consistency or coherence of responses to Internet servers or end systems."

My registrar is also suggesting that they are going to just keep the money I pre-paid for years of registration, which is a minor annoyance compared to the loss of my entire online identity but an annoyance nonetheless.

Since ICANN is a non-profit that is required to operate in the public interest I do hope there can be some pushback on this. I will be writing to the CA AG myself.

More comments...