[gnso-rds-pdp-wg] gated RDAP (was Re: Article 29 Working Party to ICANN)

Andrew Sullivan ajs at anvilwalrusden.com
Mon Dec 11 18:17:35 UTC 2017


On Mon, Dec 11, 2017 at 04:09:54PM +0000, Michele Neylon - Blacknight wrote:
> 
> For now, I can see a situation where a registrar will end up running RDAP with ACLs. And there’ll be layers of access with logging etc.,
> 

If by "ACLs" you mean the same IP-based ACLs a lot of whois servers do
today, I can't see any reason to do it this way.  One reason RDAP is
designed to run over https is so that we get all the https auth
methods for free.

In my opinion, the correct way to do this would be to identify some
set of rules for a self-appointed and -regulated constituency to meet,
and some auditing rules of that constituency.  Then the constituency
can operate its own OAuth service and it can manage its own membership
without ICANN or registries or registrars needing to be involved.  The
Internet scales because it is distributed.

> It’s already being done by a lot of ccTLDs and by two gTLDs.

Really?  I know of a couple RDAP testbeds, but nothing really in
production.  And of course they're limited because of ICANN's
determination of what a registry service is.

Also, why are we talking about this now, when we can't even get
agreement on what a legitimate use is?

Best regards,

A

-- 
Andrew Sullivan
ajs at anvilwalrusden.com


More information about the gnso-rds-pdp-wg mailing list