Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

And at the end of , open discussion with a panel.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Use of the Public Suffix List, and refreshing of its content, is a choice by the developer of an application, they do what they want, nothing is mandatory.

Some warnings for developers: do not rely on this list for real security.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

The speaker insists: DON'T USE REGEXPS TO VALIDATE IF SOMETHING IS A TLD, OR IF IT IS A REGISTRATION DOMAIN.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

The Public Suffix List is important: unlike what many people think, not every registration domain is a TLD.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

The Public Suffix List rejects additions for domains in "alternative roots". People often react violently to this rejection.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Jothan Frakes on the Public Suffix List publicsuffix.org/ (finding the responsible domain, for instance foo.eu.org and bar.eu.org are not under the same administration). A volunteer project, not official. Widely used in browsers and many other things.

I even used it in one of my projects, the   crawler framagit.org/bortzmeyer/lupa/-

#gemini #Lupa #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

But you cannot use any email address for that. It may be misleading (president_of_ebonia@gmail.com) or leak personal data. So, it has to be an email address in a known domain, such as their id.sport.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Identity again. Werner Staub suggests to use email addresses of domain name registrants to join with identity services.

Nice domain for examples botsin.space/@DNSresolver/1063 (yes, it is what its name says)

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Frankly, I don't really understand what they are doing. A lot of buzzwords in the talk, but unclear.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Michael Palage & Frank Cona about how the .music TLD deal with and issues (mandatory checking of users identity).

Also of course connected with other identity and personal data talks at such as the one on Jake or the one on RegeID.

#gdpr #nis #row #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

People raise concerns about mandatory identity checking for domain names. What if the government does not like you? (Short answer: eIDAS is just a framework, each country can set its own rules, and making the check mandatory or not)

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Also, the future NIS 2 european directive plans to mandate these identity checks to have a domain name.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Jaromir Talir about , an identity solution.

Based on eIADS (european framework for mutual recognition of digital identities). France's will join soon.

For domain name registry, it could mean mandatory checking of identity to get a domain name (like in Estonia and Denmark).

#RegeID #franceconnect #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Now, the demo. "An error occurred'" Reloading the page and it worked but then query timeouted.

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Mario Loffredo, Francesco Donini, and Maurizio Martinelli now uses to authenticate clients, through the software (the authors really love it and thinks it has a lot of great features).

#openidconnect #rdap #keycloak #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

being query/response, latency matters and negotiation takes time, according to the measurements. Moving RDAP to ?

(Also, distributing the RDAP servers would help. Except , they are all unicast.)

#rdap #tls #quic #apnic #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Carlos Ganan on performance (measuring the response time). The actual measurement lasted one month, from ten vantage points , to every RDAP server known.

Average RTT 1 second, with some outliers taking MINUTES to respond.

The RIR were the fastest, the registrars the slowest.

Highly dependant on the vantage point: probably no anycast on the server?

#rdap #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

First question is of course about the transition. Everyone dislikes jCard/vCard but it is already implemented. Should we do it again?

#regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Mario Loffredo presents the JScontact data model for domain name contact information. (Currently, uses /#jCard, that everyone dislikes)

jscontact-tools is a Javascript library to manipulate it. Including validation, and conversion to/from vCard/jCard. github.com/consiglionazionaled

#rdap #vcard #regiops

Last updated 3 years ago

Stéphane Bortzmeyer · @bortzmeyer
6697 followers · 75529 posts · Server mastodon.gougere.fr

Oh, and if you don't know how a domain name registry works, you can start with this simple article afnic.fr/en/observatory-and-re

#regiops

Last updated 3 years ago