Geektools whois gateway has shut down after a 25-year run
geektools.com
geektools.com
To be fair, I haven't use it much over the past decade or so mostly because the nature of my work has changed and the info has become increasingly useless over time.... but just a couple of weeks ago I gave it a go just to see if it was still around. I guess that test didn't age well.
When you do a domain transfer, the registrars involved are required to get confirmation of the transfer, which means that the gaining registrar needs a way to query the contact information for the domain. With thick registries, all the gaining registrar needs to query this is the EPP key (AKA the transfer code, transfer key, authinfo, &c.) and the domain name, and then they have read-only access to the domain object and any contact object associated with the domain in question. With thin registries, there's no such thing, so the only way to implement ICANN's Inter-Registrar Transfer Policy is to query WHOIS. Up until ICANN finally forced a standard format on gTLD WHOIS responses, this was a nightmare as all too many registries would go out of their way to make it difficult to get any information out of WHOIS.
I'm glad to see WHOIS starting to die for domain names and be replaced with RDAP.
whois google.com
https://www.icann.org/en/blogs/details/icann-board-approves-...
> The global amendments specify operational requirements for providing Registration Data Directory Services (RDDS) via RDAP and detail the sunset of certain obligations for registries and registrars to provide RDDS via the WHOIS protocol by 28 January 2025.
Note that, because registries will be contractually mandated to support RDAP, and that if they choose to continue supporting WHOIS they will be subject to additional uptime/monitoring requirements on WHOIS that they wouldn't be if they simply dropped WHOIS, most are planning on dropping WHOIS as soon as possible.
I feel a bit sad, it represented the hacker culture of the early web which unfortunately is long gone. A different time.
hoping your registrar does indeed send his 'very important mail' from that domain .
Do you also have a dedicated phone number for your registrar to call? And home address? The whole thing is a bit iffy, I'd much rather that my personal information remains with the party that can relay any relevant queries.
Another problem with using an inbox @ your domain is that, when there's a problem with your domain... good luck receiving that email. I have two accounts with the registrar for different domains and they point to each other. Not great, perhaps I should open a hotmail for this that relays copies of any emails so I still get the notifications during normal times, but it's something.
ICANN don't do that. Your _registrar_ is required by ICANN policies (search for "Whois Data Reminder Policy") to send you notifications to ensure your contact information is current. Whether your domain gets terminated or not is largely down to your registrar, but if your contact details aren't accurate, you probably aren't getting billing notifications either.
And it is ICANN policy, it's not the registrar doing this for fun and profit. Per their new-ish policy, it is that my registrar indeed sent that email from a random domain they had laying around.
Not surprised on this, especially on the GoDaddy part. Although .uk also has no-proxies rule, at least Nominet themselves don't reveal your details if you're an individual even before GDPR (the idea being that if you're a company you have enough money to handle public requests).
I have actually checked this, and you're (partially) wrong on this one. To be fair, I was also wrong that GoDaddy (within limitations set by the Department of Commerce) has free reign here. The actual process is more boring: while the US DOC has veto powers, in practice it's the .US Stakeholder Council (https://www.about.us/stakeholders) which decides on matters about .US policies.
On that note, in the specific issue of no-proxies rule it was the US DOC who enforced it, not GoDaddy or Neustar (which was the previous operator): https://www.washingtonpost.com/wp-dyn/articles/A7251-2005Mar...
(Note: I work in this field.)
For example, you cannot 'whois example.org', see DNS servers listed, and think "OK, those are the glue servers!". Nope. You need to dig at the root .org DNS servers, and find out what they have configured as glue records, and then query that.
$ dig +short org. NS
c0.org.afilias-nst.info.
d0.org.afilias-nst.org.
b0.org.afilias-nst.org.
a0.org.afilias-nst.info.
b2.org.afilias-nst.org.
a2.org.afilias-nst.info.
$ dig +norec @a0.org.afilias-nst.info. example.org. NS
<snip>
;; AUTHORITY SECTION:
example.org. 3600 IN NS a.iana- servers.net.
example.org. 3600 IN NS b.iana-servers.net.
Now you know what the glue records are for a domain.Trusting whois, which is sporadically updated these days, and often inaccurate, won't necessarily help anything.
I get why you do trust it, it used to be reliable, it used to be accurate, it just isn't in many cases any more.
As for what the registrar thinks, I wouldn't trust whois for that, either. Not these days. I'd want to query the registrar directly, to find out.
(Maybe you meant all of this, but at least it's clear for others now, either way)
A domain that doesn't have any name servers configured on it cannot serve any content, and you can spin your wheels for a very long time if you're only playing around in DNS land. You'll see that there are no DNS entries being served up for the domain name at all but you won't know why, or how to actually fix it. You need to query the registry to find the root of the problem and realize that you need to set the name servers at the registry level (which as an end user you would have to do through your registrar, but which I as a registry operator can bypass).
Also, and I can't speak for other registry operators, but when you query us directly, you get a live view of the data, that is almost always real-time, but in the event of high load for WHOIS queries on that specific domain, might be served out of cache that persists for up to one minute. Point is it's more likely to be accurate at the present time than anything in DNS, which has more caching layers that last longer.
Of course I am, that's the only way to know what the glue records actually are. Naturally there is the registrar side, but none of that means anything, when you're working with DNS, and need to know what is configured at the root server level.
Which is all that matters when you're doing DNS lookups.
My point here is, that using whois won't tell you that reliably. Only a direct root server lookup will.
What we're saying is not really that far apart, as we're both agreeing that whois is not the same as root server glue records.