"Here's my credit card and GoDaddy creds, guys, and here's a technical note about my DNS settings that I want you to pay extra special attention to. Tell me when I should expect to start getting the GoDaddy confirmation emails. Other than that, have fun playing with DNS settings -- I never want to even think about them again."
This post is 5% "Here's my recommendation for a DNS service" and 95% "Notice how in return for an hour or two of grunt work a SaaS company just made it very easy for me to award them $2,000 of high-margin recurring revenue a year despite being twice as expensive as my pre-existing option by successfully overcoming my 'I would love to move off my existing solution but it requires grunt work so I think I'll punt on that decision for, oh, eight years' objection? That's a really good trade. You should consider offering it in your SaaS business, too, in any way that makes sense for it."
On the other hand, we're talking about security here, and, sadly, a company that has extra helpful support may be more easily socially engineered. The author's advice to use gmail.com addresses only works because Google basically has no customer support for gmail.com, so there's no one to social engineer!
I run a business which collapses catastrophically if I lose control of my Internet presence, and I'm at least as Internet-exposed as "a guy who owns a desirable Twitter handle."
I don't care about elephant hunting. I put up with years of my intelligence getting insulted by SSL certificates being hawked by models. I can appreciate that the economics of the business mean that there need to be upsells to continue offering the low low prices. Fine. But if you cough up a domain, that's it, we're done. I care about that like Thomas cares about SSL CAs offering a CA=true cert to a third party.
Referral link, gets both of us 1 month free service: https://dnsimple.com/r/96a980397648e9
Also everything patio11 said above. :)
Honestly I don't have enough experience with them to really evaluate their services, but they seem trustworthy and competent, and I like working with people I know I can talk to.
Their customer service has been really great since, so I'm staying. It's probably slightly more expensive than I could get elsewhere, but for the sense of security I get, it's completely worth it.
Point being- In this shitty business, where trust is everything - I prefer a small player who I can have a direct personal relation to, over some big nameless corporation.
Executive-lock (E-Lock) allows for the domain name to be frozen. This means that the domain name is:
1. Unable to be transferred out to another Registrar.
2. Unable to be pushed to another Fabulous account.
3. Unable to have changes to its nameservers.
4. Unable to have the registrar-lock status removed.
You can define whatever conditions you want and they manually do them if you want it unlocked. It could take many days to unlock your domain, but it definitely isn't going anywhere.
"If your portfolio generates US$750 a month or you are willing to transfer 750+ domains to Fabulous, please complete the form below."
That's a little out of my range though I'd be willing to pay a premium (how much of a premium?).
They are focused on large portfolio customers. That's kind of the caveat for their service. Many of those large customers also use their other services like domain parking too.
https://www.gandi.net/static/contracts/en/g2/pdf/MSA-1.0-EN....
* 2 factor authentication
* 5 security Q/A's before you can make an account change!
http://www.namesilo.com/Support/Domain-Defender
there is no WAY this guy would have had an issue if he was with namesilo and had both protections enabled
(I'm just a happy client and in no other way related to them)
Except their customer support has a process to bypass those 5 security questions:
http://www.namesilo.com/Support/Forgot-Domain-Defender-Answe...
How can you be sure their customer support can't also be socially engineered? I'm actually hesitant to use a service which requires 5 security questions to make a change, because I bet so many people forget their answers that their support is lax when it comes to bypassing them.
We will need to ask you questions to verify your identity. These questions will be different based upon your account and history with us. Please understand that these verification steps are for your protection.
Have been using them since 2006 both personally and at work. They do have 2 factor auth.