[gnso-rds-pdp-wg] Verisign Labs Experimental Implementation of RDAP with Federated Authentication

Hollenbeck, Scott shollenbeck at verisign.com
Wed Feb 3 19:28:35 UTC 2016


I'd like to share something I sent to the gtld-tech list (among others) earlier today:

http://mm.icann.org/pipermail/gtld-tech/2016-February/000703.html

I'm sure most of you have heard something about RDAP and differentiated or gated access based on client authentication. The experiment that my team is conducting has been designed to explore how client authentication might actually work using an existing federated authentication framework known as OpenID Connect. Folks on the list are welcome to participate in the experiment as end users.

Some caveats:

This is not WHOIS. The output from an RDAP server is JSON-encoded and designed for machine consumption. You may need a JSON browser plug-in to make the responses easier to read.

An authenticated query requires the use of an identifier issued by an OpenID Provider. Right now we support two. You'll need a Gmail or Hotmail email address to see how an authenticated client can receive more information than an unauthenticated client. Right now we do not support a provider that will return all of the information that you can currently get using WHOIS. That will change as we add support for additional providers.

The data source is from the .cc and .tv ccTLDs. You can use "nic.tv" as an example to explore.

Feel free to ask questions!

Scott



More information about the gnso-rds-pdp-wg mailing list