Domain Registrars And ISPs: The Soft Underbelly Of Coercive Control
from the know-your-domain-right dept
When I first got into this business I frequently wondered why the domain-policy mailing lists I was getting involved in attracted a lot of activist types.
Over the years it became apparent to me very quickly, that in an emerging era of global communications and transparency (what Anthony Wile calls "The Internet Reformation") - that "the name" (the domain name) along with the ability to "locate it" (DNS) was a central, all-important "secret sauce" to the entire internet.
But it was only gradually that I became aware that it would take centre stage politically and and become the battleground between forces for liberty, free speech and emerging civil & business models on one hand and entrenched reactionary, authoritarian, cronyist kleptocrats on the other.
Hence those passionate activist types (some of whom I used to tirelessly argue with) were getting so worked up over the high-intensity Orwellianism that they could sense coming somewhere over the event-horizon.
While the co-opting of this marvellous internet into an all pervasive surveillance apparatus is a paramount issue, it is outside the scope of this article. Consider it one side of a dual-pronged approach of modern-era repression and totalitarianism.
The other side of that vice is the DNS and naming system of the internet which is the "choke point", where control can be exerted, censorship implemented and protection rackets flourish.
In a world where news travels over the internet before the traditional media is even aware of it, where non-sanctioned, unofficial sources can audaciously disseminate the truth without central planners massaging, spinning or heavily redacting it; the domain name, or the DNS that powers them is basically the dial tone of the entire global communications medium. Take out a domain or its DNS, you shut down it's voice, it's message or it's economic activity. You make it go away.
Without getting too detailed with the technical specifics (although I'll happily talk the ear off of anybody who asks me about it), the "inverted tree" structure of the DNS naming system distributes power in the following pattern:
- The Root < -- ICANN
- The Top Level Domains (com, net, org < ---- Verisign, Afilias, Public Interest Registry, Neulevel and soon all the new ones, Donuts, etc)
- Second level domains (registrars, DNS providers, web hosting providers, ISPs)
ICANN is conspicuously absent from curating the interests of global stakeholders within the overall naming scheme. Because of this, US law applies across most of the internet, and in the absence of a concerted effort to address global interests (no, not globalist interests, I mean "also considering interests from outside the USA") there will eventually be a root level net split and won't be pretty (yes, I'm fully aware how crazy that sounds now, I always sound crazy about 5-years in advance.)
At Level 2, the registry operators are themselves, pretty big and pretty bureaucratic - if a vested interest wants to compel them to do something they know they have to get a legal basis to do it, like a court order.
So the soft underbelly of coercive control starts at Level 3, which is rife with myriad third parties falling over each other to "serve" registrars, DNS providers, web hosts and ISPs with various facades of "legalese" designed to baffle unwitting abuse desks into submissive compliance with purely "made up" takedown rationalizations.
If you remember the Simpsons episode where Monty Burns is being committed to a mental institution against his will for becoming inordinately enthralled with the difference between "Ketchup" and "Catsup", he is informed by Chief Wiggum as he is being dragged up the steps to the asylum: "Relax…you've gone off your nut and you're being committed to a mental institution…. those grocery store clerks signed the commitment papers".
That's about the best description there is of today's "takedown request" racket that is overrunning the internet.
Quite literally "some guy", in England or "someplace" (often times in England tho), will email a registrar or a DNS host in some other country entirely and will tell them "Hi! I'm an 'internet investigator' here in some place in some official capacity, and the following domain names are operating in contravention to some laws here. So, uh, take the domains down. Ok?"
And more often than not, the recipient will simply AGREE and just do it.
If they do not comply right away the "official guy somewhere" will tell the recipient that if they do not comply then they are themselves in some sort of legal trouble (or in violation of some contractual obligation which some official guy somewhere is not even a party to) and there will be trouble.
Recipient usually agrees and shuts down the domain. Which, absent some obvious network abuse issue, I find mind-boggling. Some of the letters we get from private, non-governmental, self-appointed "regulatory" bodies with no legal or enforcement powers anywhere on earth contain claims and make leaps of logic which are on par with fantastic narratives spun in Nigerian 419 scams.
That some of the largest ISPs and registrars in the world actually take them seriously and shut down entire businesses on this basis is nothing short of criminally negligent.
But shut down they will. Somebody with a badge out of a box of Cracker Jacks can probably email your registrar right now and tell them to unplug your domain name from the internet and there's a good chance they'll do it.
People may tell me to calm down, because right now the most common targets seem to be "dodgy" websites (like "rogue" pharmacies), but as we've noted elsewhere, the script we laid out in First They Came For The File Sharing Domains is playing out nearly verbatim in the three years hence. And there was an extra-judicial attempt to take out Wikileaks for the crime of egregious truth telling.
All of this begs the fundamental question of due process, something these ersatz enforcement agencies are happy to throw overboard and replace with their own Calvin-ball interpretations of reality.
So if or when it happens to you, you should know this:
Unless there is a court order in the jurisdiction of the Registrar who shuts you down - they CANNOT stop you from transferring your domain out to another Registrar.
That is your basic domain right (notice it's in the singular). It was just upheld by an NAF panel under an ICANN TDRP proceeding. We're in the process of doing this again right now for another client who had their fully compliant Canadian business, doing business from and in Canada was shut down entirely when literally "some guy in England" emailed their US-based registrar and told them to shut down their domain - which they promptly did, no questions asked (watch our blog as this unfolds).
Hopefully before long Registrars are going to wake up and realize that Chief Wiggum can't compel them to take down, hijack and lock your domain name unless he has a court order from some place other than Springfield.
Mark Jeftovic is CEO of easyDNS
Thank you for reading this Techdirt post. With so many things competing for everyone’s attention these days, we really appreciate you giving us your time. We work hard every day to put quality content out there for our community.
Techdirt is one of the few remaining truly independent media outlets. We do not have a giant corporation behind us, and we rely heavily on our community to support us, in an age when advertisers are increasingly uninterested in sponsoring small, independent sites — especially a site like ours that is unwilling to pull punches in its reporting and analysis.
While other websites have resorted to paywalls, registration requirements, and increasingly annoying/intrusive advertising, we have always kept Techdirt open and available to anyone. But in order to continue doing so, we need your support. We offer a variety of ways for our readers to support us, from direct donations to special subscriptions and cool merchandise — and every little bit helps. Thank you.
–The Techdirt Team
Filed Under: dns, domain transfers, domains, mark jeftovic, web hosting
Companies: easydns
Reader Comments
Subscribe: RSS
View by: Time | Thread
It ruins the playground for everyone else.
Ehud
[ link to this | view in chronology ]
Re:
[ link to this | view in chronology ]
Re: Re:
[ link to this | view in chronology ]
Wow
[ link to this | view in chronology ]
Re: Wow
[ link to this | view in chronology ]
[ link to this | view in chronology ]
I'm sure once the powerholics decimate and disgrace the current DNS system for long enough, it will accelerate competing, non-centralized systems, as a mainstream alternative to the current DNS design.
Never underestimate the drunken stupidity of a powerholic. I'm sure we'll have the need for such decentralized systems, probably sooner than later.
[ link to this | view in chronology ]
Re:
There are plugins for Chrome and Firefox that resolve these .bit domains, since there is no browser support natively yet.
It's early, but apparently they have over 77000 domains registered already.
[ link to this | view in chronology ]
Re: Re:
But im fairly tech literate and i cant get my head around how to set one up and more to the point how to actually get users to use it.
[ link to this | view in chronology ]
[ link to this | view in chronology ]
Re:
What are your qualifications for disrespecting Mark?
[ link to this | view in chronology ]
Re:
The style of writing is very much in the vein of raving, foaming at the mouth tinfoil hattery. But I think the content has a lot of merit.
[ link to this | view in chronology ]
Endgame
Guys like Mark and easyDNS can take a stand and its great they do so. But at the end of the day i can see laws being changed to make such court orders childs play to get if you just say piracy or terrorism. So even the court order only wont be enough soon enough......
[ link to this | view in chronology ]
[ link to this | view in chronology ]
I'm not even thinking Police force from country X should be able to seize domains unless they are country specific and proper paperwork is filed. IE I don't have a problem with the UK taking down .uk domains with proper paperwork, but they should not be able to effect .us or any generic domain such as .com. Sadly, I think ICANN is too much of a political mess to actually be any use. Even the ICANN dispute process is painfully hard to traverse, as you probably know from the transfer requests.
Should we just ditch the current DNS infrastructure?
In all honestly, I think the protocol is old and worn out and I'm sure you know that changes are hard to implement. (It's been over 10 years since EDNS was written and still isn't properly implemented globally.) Add that UDP is a horrible transport especially without many implementing BCP38, I'm gaining favor of an alternative P2P network like .bit, though I've never actually used it or looked at it.
[ link to this | view in chronology ]
It's always nice to see an insider criticism like this. The sad part is that when Lvl 3 does not work they will inevitably go to Lvl 2. Can we stop the Owrellian flow before that? If it gets there what can be done? And considering the USA today how long till they attack LVL 1 shamelessly? And if the root splits, what will happen? Can ICANN be replaced by a decentralized but trustful alternative?
So many questions, so little time.
[ link to this | view in chronology ]
Make a blacklist of bad registrars?
[ link to this | view in chronology ]
Oh, it's conflating "First They Came For The File Sharing Domains" again!
Those who call themselves "pirates" self-identify as don't have rights, it's just plain fact that you're calling yourselves thieves and your driving principle is to steal content. No one has a right to distribute the copyrighted content that others made nor even to promote it or put up links to it: that crossed the crucial boundary between "mine" and "yours". Simple principle: if it ain't yours, just leave it alone. It's not "free speech" to help theft, it's contributory infringement.
Now, you have also wrong notion of "due process" in this context and conflate it with gov't action. But as held here at Techdirt just last weekend: "Google is voluntary. NSA is not." -- ICANN and root DNS servers are corporate, not gov't. When you paid for a domain name, you came under control of corporate entities, not gov't (yes, even if "international" those are corporations). I don't like corporations and would nationalize (or have kept all that national), but that's what we're stuck with now, and you don't have what you're calling "due process". Corporations in fact DO have "extra-judicial" powers. Get facts straight before you rant.
You should be cleanly and clearly opposing the "extra-judicial" powers of corporations, not muddying your own and public interests up with "file sharing" that's inherently stealing, and "due process" rights that do NOT exist.
2nd, here's another conflation from "libertarian" loonyism that I'll move words to show your error: "battleground between forces for liberty, free speech and emerging civil [practices] on one hand and entrenched reactionary, authoritarian, cronyist kleptocrats business models on the other." -- It's exactly "business models" that drive all you appear to oppose. You're a small fish and likely okay, but should put this on Populist basis: BIG IS BAD. Of course, that'd require thinking on your nettish idealist notions and much else.
CORPORATISM IS THE PROBLEM.
PIRATING CONTENT EUPHEMIZED AS "FILE SHARING" IS STILL STEALING.
TRUE ANTI-CORPORATE POPULISM IS THE ANSWER.
Spying is the main "business model" of the internet, especially for Google and Facebook.
03:51:11[d-602-2]
[ link to this | view in chronology ]
Ahhh yes, protocols get worn out due to well documented mental fatigue. A common engineering problem in the field of mentalurgy, but with alloying and tempermature control, one can use the older age of mentalolgists to apply the idea of wisdom.
[ link to this | view in chronology ]
Re:
[ link to this | view in chronology ]
Cannot?
Cannot, or may not?
[ link to this | view in chronology ]
You left out an important detail...
[ link to this | view in chronology ]
Kiddy winks
Especially if we start by filing takedown requests for the legitimate websites of MAFIAA members. };D
[ link to this | view in chronology ]
[ link to this | view in chronology ]
Re:
[ link to this | view in chronology ]
Bleeding Eyes
Seriously, get an editor. Or edit it yourself. Or something. Mkay? You made my eyes bleed with that one.
I think your points are good ones. But a little judicious editing would have been good.
[ link to this | view in chronology ]
[ link to this | view in chronology ]