Re: [therightkey] First public DNSChain server went online yesterday!

Paul Wouters <> Sat, 08 February 2014 02:02 UTC

Return-Path: <>
Received: from localhost ( []) by (Postfix) with ESMTP id 8F9BE1AD8F5 for <>; Fri, 7 Feb 2014 18:02:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -2.535
X-Spam-Status: No, score=-2.535 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RP_MATCHES_RCVD=-0.535] autolearn=ham
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id HG0xHkFjg6j3 for <>; Fri, 7 Feb 2014 18:02:14 -0800 (PST)
Received: from ( []) by (Postfix) with ESMTP id A9AA81ACCEB for <>; Fri, 7 Feb 2014 18:02:14 -0800 (PST)
Received: from ( []) by (Postfix) with ESMTP id 17DEC800AA; Fri, 7 Feb 2014 21:02:14 -0500 (EST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=default; t=1391824934; bh=4ES3k7Ps8F22eNzdflETv5igIHaHmpxp/D8Q56vLMaY=; h=Date:From:To:cc:Subject:In-Reply-To:References; b=CjXb1aa+nGBab9V4ODkjBoeJhoKwtPoBhvcHwUOt0RQoMj9oSdobzkORxp07nry5/ o4+BDf/iyYCLDzlsY8pYi0Y8RMqFiMdBR0Tut68NksVzAd/YULdIaQ2fC0E8NeBO4l UKbe2qntfyzNYlFC/EtehbAmXc4jSkW/AHYGSSGg=
Received: from localhost (paul@localhost) by (8.14.7/8.14.7/Submit) with ESMTP id s1822DZx012602; Fri, 7 Feb 2014 21:02:13 -0500
X-Authentication-Warning: paul owned process doing -bs
Date: Fri, 07 Feb 2014 21:02:13 -0500
From: Paul Wouters <>
To: Tao Effect <>
In-Reply-To: <>
Message-ID: <>
References: <> <> <> <> <>
User-Agent: Alpine 2.10 (LFD 1266 2009-07-14)
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; format="flowed"; charset="ISO-8859-15"
Content-Transfer-Encoding: 8bit
Subject: Re: [therightkey] First public DNSChain server went online yesterday!
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Sat, 08 Feb 2014 02:02:17 -0000

On Fri, 7 Feb 2014, Tao Effect wrote:

> Hi Andrew,
> Thanks for the feedback!

Unfortunately, you did not actually read Andrew's feedback.

> This equally applies to GNUnet's DNS system (.gnu?), to Namecoin's .bit, and to Tor's .onion links.

Which is also seeing quite some resistence (and justly so)

> The public DNS is broken and insecure.

So why do you want a TLD in it? It's broken and insecure. Go somewhere
secure? Oh, you mean it is still useful and secure enough for you? Maybe
it is secure and useful enough for everyone else too?

> ICANN is an old, centralized, and insecure thing, that I personally feel, at this point, is more deserving of the label
> "junk". ;-)

>       I would like to suggest some other domain name.  You can register any
>       available thing you like.  It need not actually resolve in the public
>       DNS, as long as it is registered so that nobody else can get it.
> How do I register the .dns TLD?

That's not what Andrew asked you. Why can you not register and use

> Does it involve paying money to ICANN? I'd rather not pay them anymore than I'm already begrudgingly paying them.

Yes, pay ICANN $120k

> Is it even possible? I doubt it. :-p

Yes it is. I'm sure you can pay that $120k immediately once you tell
your angel investor about your grand plan on how to save _everyone_ in
the world from their $10/year domain rip-off.

> "Hey guys, I'd like to put you out of business and make the whole domain registration thing decentralized, could you please
> give me .dns?"

How come you _need_ them _and_ will put them out of business? Why not
pretend you succeeded and ICANN and the DNS is dead. So no need for your
.dns TLD anymore, since the root is dead. Why do you want .dns again?

You didn't even address two valid points Andrew brought up:

1) You are going to cause sending junk queries all over the internet.
    What are your plans to preven/reduce that?

2) Why do you need a TLD .dns, and why can't you use a $15/year

My bet is that you are going to provide some kind of mapping service to
bridge cryptographically secure hashes into memorable names, thus
becoming your own ICANN. See the above link :P
