How to Become a Registrar (2012)
icann.org
icann.org
There's even a ICANN rule I think that says a registrar and a registry can't be the same legal entity, which is why Google had to create a separate company called Charleston Road Registry for .dev, .app, .google etc (likewise Donuts created Dog Beach LLC and so on).
[1] I know most registrars offer additional services like hosting which smaller (and often non-profit) registries may not be equipped to provide. But that doesn't really answer the question. Why can't registries handle basic domain registration themselves & leave hosting to specialized providers?
The probable real reason? Because ICANN is a money grab full of completely incompetent people from yesteryear who've been coasting for decades. And without registrars, registries may just realize they don't need ICANN at all. Seriously, look at their DNSSec offerings and especially look at the ingenious 'Digital Archery.'
Registrars have to compete in those areas and that benefits registrants. Instead of eliminating registrars I think they need to be empowered a bit at the expense of the registries. The registries don’t seem to understand the product they’re selling and only seem to care about price discovery and discrimination.
IMO one important function of registrars is handling international payment systems. If it were completely up to PIR, I wouldn’t be surprised if they only accepted Visa and Mastercard like so many American businesses selling digital products with no regional restrictions otherwise.[2] That largely wouldn’t be a problem for Americans and Western Europeans but would be terrible for most of the world’s population. This is not an argument against registries offering optional direct-to-registrant services, though.
[1] https://www.icann.org/en/system/files/bm/rationale-cross-own...
[2] Maybe PayPal as well, maybe even wire transfer. Anyway, the point is only US-centric or first world-centric payment would likely be supported.
This is a benefit, because running a registry is a technical business, and running a registrar is a customer service business. In the old days, if you didn't like the service, you needed to find another TLD; post 1999, you can keep your domain and change your registrar when you want. The TLD can redelegate the registry business too, but it doesn't affect the end customers very much.
There's only 2800 registrars, and popular registries likely deal with each of them, but that's not a large number. When registries need to contact registrars, it's manageable.
But not all TLDs operate this way. ccTLDs can operate however they like: some have evolved to a registry/registrar operation, some offer direct registration only, some offer direct registration and through intermediaries.
I’ve registered and managed domains for my businesses for 20+ years now and I have never once been in contact with a registrar’s customer service. I want a registrar that runs like a technical business. My main problem with them is that they all turn into leaches when they are successful – charging more and more for renewals, filling their websites with more and more spammy “products”.
I setup OpenSRS reseller accounts for two internet businesses I worked for in 2000, and I might do it again for a low effort side business, but I haven't convinced myself the paperwork burden is worth it to operate a business.
Yep. This is why I don't mind paying a slight premium to register everything through AWS's Route53.
AWS is making $90b/yr in revenue. Stuff's got to go pretty far off the rails for somebody there to sign off on "Yeah, you know what, I think we really need to start doing upsells and dark patterns in Route53 registrations!"
And if I need to contact support... their support department isn't budgeted based on running a domain registrar. It's budgeted based on supporting their cloud business. Every time I've contacted them about everything they've been quick, efficient, and competent.
So I pay them $14/yr instead of paying Spaceship or Porkbun $10/yr or Internet.bs $13/yr or... If I'm ever at the point where the $1-4/yr matters, I should probably just revisit all these domains I keep renewing.
Interacting with a registrar's domain management web interface is being in contact with the registrar's customer service - it's just automated, rather than manual, customer service.
Anyone who uses this "trick" automatically loses whether they know it or not.
Wrong. Again.
I am with internet.bs and a happy customer since 10y
For European TLD I would use inwx.com
I buy email external for 18 Euros a year at infomaniak.com
And now imagine how bad that problem would be if they knew that the only way you could walk away would be by giving up your TLD, to which very likely at least some marketing materials - potentially the whole identity of your company - is tied.
In practical terms there's a lot fewer. Look through the list of registrars [1], ideally sorted by the contact email, and you'll find that many of them are "sock puppets" of a larger operation:
* 1,251 registrars are operated by NameBright, including "DropCatch.com 345 LLC" through "DropCatch.com 1545 LLC" (numbered sequentially).
* 479 are operated by Network Solutions under many different names.
* 300 are operated by Gname and are named, rather uncreatively, "Gname 001 Inc" through "Gname 300 Inc".
There are a lot of other small-scale duplicates, like about fifty run by LogicBoxes or twenty by DotMedia, but the three mentioned above make up nearly three quarters of the total alone. I'd be surprised if there were much more than two or three hundred distinct companies involved in the domain registration industry.
Last I looked they have to pay about £3K for every account annually, so clearly it's still a lucrative niche.
Meanwhile, NameBright doesn't even have a Wikipedia article.
(Readers are encouraged to try the same experiment with the trusted set of CAs with root certificates that ship with their Web browsers.)
Nor can a global registry ever be adequately qualified to function in local languages or follow regional policy and law.
So they need a channel.
What’s more, it’s not like this hasn’t been tried. Network Solutions tried to be all things to all people and were godawful at it.
So there’s a strong case for commercial separation of tiers by responsibility, and by Conway’s law the separation of technical layers follows naturally.
The allegation of ICANN being a gang of corrupt, protectionist, has-been cronies, is a separate matter
Imagine them as filters.
A registry maps one TLD to multiple registrars.
A registrar maps multiple registries to multiple registrants.
Companies come with jurisdictions. A given company will operate, or be exposed to, one or more jurisdictions. In the modern Internet era this is even more important, but even before privacy became paramount you could never expect every registry to deal with customers around the world. There are different laws in different countries. So you need some local entity to act as a kind of middleman, if only to accept local currency and payment options.
This conversation has gotten more important recently because legal requirements around registrant data differ by jurisdiction. However, IMO this is simply a logical extension of the requirement for locality.
People around the world do business differently. Also, a registrant may wish to control domains under different TLDs with one account. That requires a registrar that can interface with multiple registries.
You'll hear claims of how privatizing this public good simple administrative function "optimizes customer service", but I think that's either been shown to be some Ayn Rand Libertarian fantasy, or was intentional corporate BS messaging from the start.
Functionally, it's almost exactly like managing something with any other registrar although if you're looking for a NameDaddyCheap like experience of actually hosting a website and email forwarding in a single package then you'll have to sort it out yourself, the only thing you can do here is designate the ownership (whois) details and supply name server addresses.
You are billed directly by the government* of Åland - I guess it is easy and cheap enough for them to run this directly than miss out on profits that would go to an exclusive registrar.
*Or whatever they are technically called being an autonomous part of Finland.
- https://whois.ax/en/for-registrars/
"Apply as ax-registrar" - seems like .ax makes it especially easy. (This is news to me!)
You have to pony up day #1 for application costs, you have to contract to ongoing annual payments, you. have to have USD70,000 on hand for business continuity or demonstrate why your particular model doesn't need that.
I think any beneficent registrar right now is probably grandfathered-in.
But even if you needed $70,000 cash on hand, that doesn't seem like that much money. You're going to need some working capital, and $70,000 feels like it should be a good enough start. IMHO, I'd go through a reseller program for a while to make sure I had the volume / revenue to justify the ICANN fees to be a registrar directly; of course, if you do make the jump, you'll likely need to stay in the reselling program for existing domains or convince/help customers move their domains over, which is extra hassle; I've seen some companies where they are an ICANN registrar, but they use resellers for some TLDs and legacy customers.
When it was new, I set up two different employers as OpenSRS resellers; and I've been on and off considering setting it up for myself as a low effort side business, but I can't decide if it would be too much work for not enough reward. I hated dealing with money on the internet at the turn of the century, and I don't think it's gotten that much better.
How is $70,000 not much? OK sure, companies can be expected to deal with a bit higher number than the median revenues of citizens. However concurrent businesses won't flourish if there is an entry paying wall which by far exceed individual capacities.
Second, being a registrar is a ton of responsibility and you cannot start thinking it should be as easy as starting your handmade jewelry business.
And finally, no, $70k is not a lot of money especially for a stable business with a sound business plan. Banks especially love loaning money on reliable income sources, and domain names are very stable.
> demonstration of the ability to procure liquid capital immediately available in the applicant's name at the commencement of the accreditation period in an amount of US$70,000 or more will be deemed adequate, although a lesser amount will be accepted upon a showing that in the circumstances it will provide adequate working capital.
So, if you have a way to show that less will work, ICANN says they're flexible. IMHO, if you're a registrar trying to make money, you need to expect to sell a lot of domains, and so you'll probably need much more credit than $70k to manage payments from customers and to registries and ICANN.
Fixed fees are $4k/year, per registrar variable fees were about $1.5k last year if I read the reports correctly. Registrar margin tends to be about 10%, unless you're a specialty registrar, so you've got to be selling $55k/year of domains to break even on the ICANN fees. Let's call that $4,500/month for easy math. But ICANN presumes you need 5 full time employees for customer service; indeed says 18000 INR/month for customer service base salary in India [1], which is about $200/month USD. Five employees is $1,000/month but my US rule of thumb is all-in costs is at least 2x, so you need $20,000/month in domain sales to cover that.
With the icann fees and the employee costs, you need $24,500/month in sales to break even. I'm happy to ignore computing costs, it's probably not nothing, but you can do a lot with a little these days.
$70,000 is not quite 3 times the minimum sales number. Having that much credit available means you can continue to pay suppliers(registries) if your payment provider puts an unexpected hold on your payments, as long as it's resolved within less than three months. That doesn't seem like an unreasonable ask for customer continuity.
But, if it's too much; there are reseller programs. OpenSRS was reseller only when it launched in the first batch of ICANN accredited registrars. Annual fees and credit requirements are much less to be a reseller; if you end up with enough volume that being a registrar instead of a reseller makes sense, you'll likely have accumulated available credit, too.
[1] https://in.indeed.com/career/customer-service-representative...
This is basically highway robbery and ICANN should not allow registrars to run such backhanded, possibly illegal, practices.
Does anyone with experience in the field have any insights on what roadblocks would be encountered?
Registrar markup is not really that much. As I understand it, PIR, the operator of the .org registry charges registrars $9.05 / domain year [1], and low cost registrars typically charge end users $10 / domain year. I know there was a dust up over PIRs management recently, but I don't remember the details and couldn't find them in a quick look; if these aren't the actual numbers, they're pretty close. After payment processing, costs of included registrar provided services, customer service and operations, there's not really huge profits being made by registrars; providing service as a pass through at direct cost wouldn't be that compelling.
You'd need some other reason to encourage people to use your services, but I'm not sure what that would be. I've used specialty registrars at work, and they've got features like presence services where they have real people in the jurisdiction that satisfy the requirements of TLDs that require someone in the country to register a domain and corporate registrars that will work with the registry to enable registry locking that makes it incredibly difficult to change domain settings [2]. These are compelling features for the right kind of customer, but I don't think it makes sense for a non-profit to provide them.
[1] https://itp.cdn.icann.org/en/files/registry-agreements/org/o...
[2] We moved to one of those after the current flavor of Network Solutions was phished and an unauthorized person used a customer service account to change our domain's glue records as well as some others; with registry lock, no changes can be made by the registrar unless the registry unlocks the domain after doing a song and dance routine with the end customer --- not very convenient, especially when the authorized person ignores the call to dance, but better than when a registry employee can get phished and change our domain without our consent
How can it possibly cost PIR $9.05 per domain to run a registry? Or are they a for profit entity?
To your question though, I think PIR actually contracts out the operation of the registry to Affilias. I don't know what the current rate is, but before they renegotiated, they were paying about $3/domain to Affilias [1] based on a reported payment of $33M on just under 11 million domains.
I don't really know where the rest of the money goes. There were a lot of questions when PIR tried to sell .ORG to private equity in 2020, but I don't know if there was much follow up after the deal got quashed.
[1] https://domainnamewire.com/2016/11/14/org-sticks-afilias-bac...
So even though margins are low, as a customer it still makes sense to shop around.
Ps https://dot.bs is the service I run to compare tld registration and renewal prices
> Buy and renew domains through Cloudflare Registrar at cost, without markup fees. You only pay what is charged by registries and ICANN
The problem is, running a registrar is complicated. It costs money. People get angry with you when things break - especially if they've paid you money.
You also have to deal with abuse reports, copyright complaints, and a legal demands. Good luck finding people who want to volunteer for that particular job!
Also, registrants will not understand that you are just an intermediary who is making no profit. Since they paid you, they will hold you responsible for any problems they have, and won't shy away from disputing credit card transactions if you don't provide the level of support they expect. That's a lot harder to deal with than a free service, which can get away with providing no support.
I guess most people don't even use direct url address for anything. I often see people looking for "google" in the adress/search bar before searching the term from which they expect the link to the website they are looking for.
So given this pattern, I don't feel like the domain name is something relevant for most end users.
For a static page, or any autonomous js spaghetti, it's easy to simply save the document locally.
As soon as some updatability comes in, like a comment section, then the issue of having a way to track a distant resource really becomes relevant. IP offer no guarantees of stability of resource provider. A domain name ensures transparent IP transition as long as the domain lessee is willing and able to pay the bill. This latter point is actually a very concrete security concern, which alone should bring enough consideration to look for other approaches.
It's everything namecoin wanted to be and more. Also probably the only real usecase for NFTs besides pure collecting and speculation
Oh but it is, even if the user doesn’t realize it. How are you going to do SSL without a domain name? I don’t know of any provider that is trusted by a major browser, that will issue ssl certs for an ip instead of a domain name. You could use your own CA but no browser will accept it, and your visitors will be greeted with a browser warning.
Can you or can't you get a certificate for an IP address to "do SSL" (TLS) that is trusted by major browsers?
People have tried to create a middle, but both kinds of customers will ignore it for obvious reasons. The high-end customers know what they want and can judge quality service. The low-end customers just want the cheapest one.
Is it the same thing?
It's significantly more complicated and expensive.
for the same reason that clickbait headlines draw you in, dates are good to wave you away.