Your current browser version is too old. We recommend switching to Google Chrome for a better experience.
Email:support@eranet.com WhatsApp:+(852)68882160  +1(302)602-1509

Verisign throw a security spanner into the gTLD process

  • Release time:2013-04-08

  • Browse:3837

  •  

    Date: Tuesday, April 2, 2013 - 10:45

    Verisign today said that the new gTLD program presents risks to the security of the internet, but ICANN CEO Fadi Chehade told Domain Incite that he’s not expecting any new delays.

     

    The .com behemoth tonight delivered a scathing review of the security and stability risks of launching new gTLDs on ICANN’s current timetable.

     

    The new Verisign report catalogs the myriad ways in which ICANN is not ready to start approving new gTLDs, and the various security problems they could cause if launched without due care.

     

    It strongly suggests that ICANN should delay the program until its concerns are addressed.

     

    But Chehade, in an exclusive interview with DI tonight, rebutted the already-emerging conspiracy theories and said: “There’s nothing new here that would cause me to predict a new delay.”

     

    What does the Verisign report say?

    It’s a 21-page document, and it covers a lot of ground.

     

    The gist of it is that ICANN is rushing to launch new gTLDs without paying enough attention to the potential security and stability risks that a vast influx of new gTLDs could cause.

     

    It covers about a dozen main points, but here are the highlights:

     

    Certificate authorities and browser makers are not ready.

    CAs have long issued certificates for use on organizations’ internal networks. In many cases, these certs will use TLDs that only exist on that internal network. A company might have a private .mail TLD, for example, and use certs to secure those domains for its users. The CA/Browser Forum, which coordinates CAs and browser makers, has decided (pdf) to deprecate these certs, but not until October 2016. This, Verisign says, creates a “vulnerability window” of three years during which attackers could exploit clashes between certs on internal TLDs and new gTLDs.

     

    Root server operators are not ready.

    The organizations that run the 13 DNS root servers do not currently coordinate their performance metrics, Verisign said. This makes it difficult to see what impact new gTLDs will have on root server stability. “The current inability to view the root server system’s performance as a whole presents a risk when combined with the impending delegation of the multitude of new gTLDs,” Verisign said.

     

     

     

    Dear friends,

     

          We're from Eranet International Limited,which is one of the first ICANN, Verisign, HKDNR, and CNNIC accredited registrars,.It offers a full suite of Web-related services to fulfill and exceed our customers' expectations.

          Favourable price and high quality service!

    You won't regret to choose us!!If you're interested,you can contact us.

    Web:

    http://www.eranet.com

    http://partner.eranet.com/

    Facebook:

    http://www.facebook.com/pages/Eranet/258707884175692

    Contact Info:

    Skype Domainer27

    MSN:sales@todaynic.com

    Email:support@eranet.com

    Tel:852-35685366

     

     

     

Search

Document